<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns:vrda="http://vrda.jpcert.or.jp/mod_vrda/" xml:lang="ja" xmlns="http://www.w3.org/2005/Atom" xmlns:sec="http://jvn.jp/rss/mod_sec/">
  <id>http://vrda.jpcert.or.jp/feed/ja/atom.xml</id>
  <title>VRDA&#12501;&#12451;&#12540;&#12489;&#65306;&#33030;&#24369;&#24615;&#33029;&#23041;&#20998;&#26512;&#29992;&#24773;&#22577;&#12398;&#23450;&#22411;&#12487;&#12540;&#12479;&#37197;&#20449;</title>
  <subtitle>VRDA (Vulnerability Response Decision Assistance)&#12501;&#12451;&#12540;&#12489;&#12399;&#12289;&#32068;&#32340;&#12395;&#12362;&#12369;&#12427;&#12477;&#12501;&#12488;&#12454;&#12456;&#12450;&#31561;&#12398;&#33030;&#24369;&#24615;&#12510;&#12493;&#12472;&#12513;&#12531;&#12488;&#26989;&#21209;&#12398;&#21177;&#29575;&#21270;&#12539;&#30465;&#21147;&#21270;&#12434;&#25903;&#25588;&#12377;&#12427;&#12371;&#12392;&#12434;&#30446;&#30340;&#12392;&#12375;&#12390;&#12289;&#20844;&#38283;&#12373;&#12428;&#12390;&#12356;&#12427;&#33030;&#24369;&#24615;&#24773;&#22577;&#12395;&#38306;&#12377;&#12427;&#20998;&#26512;&#24773;&#22577;&#12434;&#12289;&#24773;&#22577;&#12398;&#20837;&#25163;&#12364;&#23481;&#26131;&#12391;&#21487;&#35501;&#24615;&#12398;&#39640;&#12356; HTML &#12501;&#12457;&#12540;&#12510;&#12483;&#12488;&#12392;&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#31561;&#12395;&#12424;&#12427;&#27231;&#26800;&#20966;&#29702;&#12395;&#21521;&#12356;&#12383; XML &#12501;&#12457;&#12540;&#12510;&#12483;&#12488;&#12391;&#37197;&#20449;&#12375;&#12390;&#12356;&#12414;&#12377;&#12290;</subtitle>
  <link href="http://vrda.jpcert.or.jp/feed/ja/atom.xml" rel="self" type="application/atom+xml"/>
  <link href="http://vrda.jpcert.or.jp/feed/en/atom.xml" rel="alternate" hreflang="en" type="application/atom+xml"/>
  <updated>2012-12-31T20:08:51+09:00</updated>
  <author>
    <name>JPCERT Coordination Center</name>
    <email>kengine@jpcert.or.jp</email>
    <uri>http://www.jpcert.or.jp/</uri>
  </author>
  <vrda:entrycount>10872</vrda:entrycount>
  <vrda:startentryno>1</vrda:startentryno>
  <entry>
    <title>JVNDB-2012-005827:&#35079;&#25968;&#12398;&#26085;&#31435;&#35069;&#21697;&#12395;&#21547;&#12414;&#12428;&#12427; Collaboration - Bulletin board &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005827_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005827_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005827_AD_1.html</id>
    <published>2012-12-28T16:17:10+09:00</published>
    <updated>2012-12-28T16:17:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の日立製品に含まれる Collaboration - Bulletin board には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005827_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:groupmax_collaboration_portal"/>
    <category term="cpe:/a:hitachi:groupmax_collaboration_web_client"/>
    <category term="cpe:/a:hitachi:ucosminexus_collaboration_portal"/>
    <sec:identifier>JVNDB-2012-005827</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005826:Drupal &#29992; Zero Point &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005826_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005826_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005826_AD_1.html</id>
    <published>2012-12-28T16:06:44+09:00</published>
    <updated>2012-12-28T16:06:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Zero Point モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005826_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:catalin_florian_radut:zeropoint"/>
    <sec:identifier>JVNDB-2012-005826</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005825:Drupal &#29992; Webmail Plus &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005825_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005825_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005825_AD_1.html</id>
    <published>2012-12-28T16:06:11+09:00</published>
    <updated>2012-12-28T16:06:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Webmail Plus モジュールには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005825_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:scripthead:webmail_plus"/>
    <sec:identifier>JVNDB-2012-005825</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005824:Drupal &#29992; MultiLink &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12494;&#12540;&#12489;&#12479;&#12452;&#12488;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005824_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005824_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005824_AD_1.html</id>
    <published>2012-12-28T16:04:48+09:00</published>
    <updated>2012-12-28T16:04:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 MultiLink モジュールは、コンテンツ内リンクを生成する際に、ノードのアクセス権限を適切に確認しないため、任意のノードタイトルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005824_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netgenius:multilink"/>
    <sec:identifier>JVNDB-2012-005824</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005823:Drupal &#29992; Email Field &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#38651;&#23376;&#12513;&#12540;&#12523;&#12434;&#36865;&#20449;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005823_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005823_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005823_AD_1.html</id>
    <published>2012-12-28T16:02:48+09:00</published>
    <updated>2012-12-28T16:02:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Email Field モジュールは、field permission モジュールを利用している、および &quot;the field contact field formatter&quot; のディスプレイモードが &quot;full&quot; または &quot;teaser&quot; に設定されている場合、パーミッションを適切に確認しないため、保存されたアドレスへ電子メールを送信される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005823_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:matthias_hutterer:email"/>
    <sec:identifier>JVNDB-2012-005823</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005822:Drupal &#29992; Email Field &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005822_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005822_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005822_AD_1.html</id>
    <published>2012-12-28T15:58:39+09:00</published>
    <updated>2012-12-28T15:58:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Email Field モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005822_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:matthias_hutterer:email"/>
    <sec:identifier>JVNDB-2012-005822</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005821:Drupal &#29992; Services &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12398;&#38651;&#23376;&#12513;&#12540;&#12523;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005821_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005821_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005821_AD_1.html</id>
    <published>2012-12-28T15:57:43+09:00</published>
    <updated>2012-12-28T15:57:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Services モジュールには、ユーザインデックスメソッドおよびユーザリソースへのパスに関する処理に不備があるため、任意のユーザの電子メールにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005821_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:marc_ingram:services"/>
    <sec:identifier>JVNDB-2012-005821</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005820:Drupal &#29992; Mixpanel &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005820_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005820_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005820_AD_1.html</id>
    <published>2012-12-28T15:50:09+09:00</published>
    <updated>2012-12-28T15:50:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Mixpanel モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005820_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mixpanel_project:mixpanel"/>
    <sec:identifier>JVNDB-2012-005820</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005819:Drupal &#29992; Table of Contents &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12494;&#12540;&#12489;&#12398;&#12504;&#12483;&#12480;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005819_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005819_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005819_AD_1.html</id>
    <published>2012-12-28T15:49:02+09:00</published>
    <updated>2012-12-28T15:49:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Table of Contents モジュールは、ノードのパーミッションを適切に確認しないため、ノードのヘッダを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005819_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:m2osw:tableofcontents"/>
    <sec:identifier>JVNDB-2012-005819</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005818:Symfony &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12469;&#12540;&#12499;&#12473;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005818_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005818_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005818_AD_1.html</id>
    <published>2012-12-28T15:20:32+09:00</published>
    <updated>2012-12-28T15:20:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symfony は、内部ルートの設定が有効になっている場合、任意のサービスにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005818_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony"/>
    <sec:identifier>JVNDB-2012-005818</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005817:Symfony &#12395;&#12362;&#12369;&#12427; URI &#12398;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005817_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005817_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005817_AD_1.html</id>
    <published>2012-12-28T15:18:32+09:00</published>
    <updated>2012-12-28T15:18:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symfony は、ルーティングおよびセキュリティコンポーネントにおいて、エンコードされた URI を適切に処理しないため、URI の制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005817_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony"/>
    <sec:identifier>JVNDB-2012-005817</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005816:OpenStack Compute Folsom &#12362;&#12424;&#12403; Grizzly &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005816_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005816_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005816_AD_1.html</id>
    <published>2012-12-28T15:16:08+09:00</published>
    <updated>2012-12-28T15:16:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Compute Folsom および Grizzly は、libvirt および LVM backed インスタンスを使用する際、インスタンスの再割り当て時に物理ボリューム (PV) のコンテンツを適切に削除しないため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005816_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:folsom"/>
    <category term="cpe:/a:openstack:grizzly"/>
    <sec:identifier>JVNDB-2012-005816</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005815:OpenStack Keystone &#12398; tools/sample_data.sh &#12395;&#12362;&#12369;&#12427; Amazon EC2 &#12408;&#12398;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005815_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005815_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005815_AD_1.html</id>
    <published>2012-12-28T15:10:49+09:00</published>
    <updated>2012-12-28T15:10:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Keystone の tools/sample_data.sh には、Amazon Elastic Compute Cloud (Amazon EC2) へのアクセスが設定されている場合、/etc/keystone/ec2rc に world-readable パーミッション (誰でも読み取り可能な権限) を使用するため、EC2 サービスへのアクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005815_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:keystone"/>
    <sec:identifier>JVNDB-2012-005815</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005814:Ubuntu &#12398; Aptdaemon &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12497;&#12483;&#12465;&#12540;&#12472;&#12524;&#12509;&#12472;&#12488;&#12522;&#12398; GPG &#12461;&#12540;&#12434;&#12452;&#12531;&#12473;&#12488;&#12540;&#12523;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005814_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005814_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005814_AD_1.html</id>
    <published>2012-12-28T15:03:34+09:00</published>
    <updated>2012-12-28T15:03:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubuntu の Aptdaemon は、鍵サーバから PPA GPG キーをインストールする際、短い ID を使用するため、任意のパッケージレポジトリの GPG キーをインストールされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005814_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sebastian_heinlein:aptdaemon"/>
    <category term="cpe:/o:ubuntu:ubuntu_linux"/>
    <sec:identifier>JVNDB-2012-005814</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005813:Ubuntu &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; APT &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#12471;&#12455;&#12523;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005813_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005813_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005813_AD_1.html</id>
    <published>2012-12-28T14:59:33+09:00</published>
    <updated>2012-12-28T14:59:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubuntu で使用される APT は、/var/log/apt/term.log に World Readable パーミッション (誰でも読み取り可能な権限) を使用するため、重要なシェル情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005813_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:debian:apt"/>
    <sec:identifier>JVNDB-2012-005813</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005812:Firefox &#29992; Unity integration &#25313;&#24373;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#21516;&#19968;&#29983;&#25104;&#20803;&#12509;&#12522;&#12471;&#12540;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005812_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005812_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005812_AD_1.html</id>
    <published>2012-12-28T14:58:10+09:00</published>
    <updated>2012-12-28T14:58:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Firefox 用 Unity integration 拡張機能 (unity-firefox-extension) の content/unity-api.js は、API 呼び出しによって toDataURL 関数を公開するため、同一生成元ポリシー (Same Origin Policy) を回避され、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005812_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension"/>
    <sec:identifier>JVNDB-2012-005812</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005811:Ruby on Rails &#29992; Authlogic gem &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005811_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005811_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005811_AD_1.html</id>
    <published>2012-12-28T14:22:09+09:00</published>
    <updated>2012-12-28T14:22:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ruby on Rails 用 Authlogic gem には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005811_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ruby_on_rails:ruby_on_rails"/>
    <sec:identifier>JVNDB-2012-005811</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005810:WordPress &#12395;&#12362;&#12369;&#12427;&#26377;&#21177;&#12394;&#12475;&#12483;&#12471;&#12519;&#12531;&#35672;&#21029;&#23376;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005810_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005810_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005810_AD_1.html</id>
    <published>2012-12-28T11:58:08+09:00</published>
    <updated>2012-12-28T11:58:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress は、管理者がログアウトする際に、wordpress_sec セッション cookie を無効にしないため、有効なセッション識別子を取得される、またはデータを改ざんされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005810_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress:wordpress"/>
    <sec:identifier>JVNDB-2012-005810</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005809:Linux Kernel &#12392;&#19968;&#32210;&#12395;&#37197;&#24067;&#12373;&#12428;&#12427; hypervkvpd &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (Daemon Exit) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005809_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005809_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005809_AD_1.html</id>
    <published>2012-12-28T11:44:59+09:00</published>
    <updated>2012-12-28T11:44:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel と一緒に配布される hypervkvpd の tools/hv/hv_kvp_daemon.c 内の main 関数には、サービス運用妨害 (Daemon Exit) 状態となる脆弱性が存在します。  本脆弱性は CVE-2012-2669 の修正が不完全だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005809_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005809</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005808:Linux Kernel &#12392;&#19968;&#32210;&#12395;&#37197;&#24067;&#12373;&#12428;&#12427; hypervkvpd &#12395;&#12362;&#12369;&#12427; Netlink &#36890;&#20449;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005808_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005808_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005808_AD_1.html</id>
    <published>2012-12-28T11:43:23+09:00</published>
    <updated>2012-12-28T11:43:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel と一緒に配布される hypervkvpd の tools/hv/hv_kvp_daemon.c 内の main 関数は、Netlink メッセージの発信元を検証しないため、Netlink 通信を偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005808_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005808</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005807:Citrix XenDesktop Virtual Desktop Agent &#12395;&#12362;&#12369;&#12427; USB &#12487;&#12496;&#12452;&#12473;&#12408;&#12398;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#20445;&#25345;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005807_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005807_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005807_AD_1.html</id>
    <published>2012-12-28T11:20:38+09:00</published>
    <updated>2012-12-28T11:20:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Citrix XenDesktop Virtual Desktop Agent (VDA) は、USB リダイレクトを制御するサーバ側のポリシーに変更する際、VDA へポリシーの変更が適切に伝わらないため、USB デバイスへのアクセス権を保持される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005807_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xendesktop"/>
    <sec:identifier>JVNDB-2012-005807</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005806:Citrix XenApp &#12398; XML Service &#12452;&#12531;&#12479;&#12540;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005806_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005806_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005806_AD_1.html</id>
    <published>2012-12-28T11:08:28+09:00</published>
    <updated>2012-12-28T11:08:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Citrix XenApp の XML Service インターフェースには、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005806_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenapp"/>
    <sec:identifier>JVNDB-2012-005806</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005805:CA IdentityMinder &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005805_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005805_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005805_AD_1.html</id>
    <published>2012-12-28T10:58:10+09:00</published>
    <updated>2012-12-28T10:58:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CA IdentityMinder には、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005805_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:identityminder"/>
    <sec:identifier>JVNDB-2012-005805</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005804:CA IdentityMinder &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005804_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005804_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005804_AD_1.html</id>
    <published>2012-12-28T10:57:44+09:00</published>
    <updated>2012-12-28T10:57:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CA IdentityMinder には、任意のコマンドを実行される、またはデータを改ざんされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005804_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:identityminder"/>
    <sec:identifier>JVNDB-2012-005804</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005803:EMC Data Protection Advisor &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005803_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005803_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005803_AD_1.html</id>
    <published>2012-12-28T10:40:52+09:00</published>
    <updated>2012-12-28T10:40:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC Data Protection Advisor (DPA) の Web UI には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005803_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:data_protection_advisor"/>
    <sec:identifier>JVNDB-2012-005803</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005802:IBM z/OS &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Tivoli NetView &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005802_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005802_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005802_AD_1.html</id>
    <published>2012-12-28T10:38:36+09:00</published>
    <updated>2012-12-28T10:38:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM z/OS 上で稼働する Tivoli NetView には、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005802_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_netview"/>
    <sec:identifier>JVNDB-2012-005802</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005801:IBM Rational Automation Framework &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005801_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005801_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005801_AD_1.html</id>
    <published>2012-12-28T10:37:28+09:00</published>
    <updated>2012-12-28T10:37:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Rational Automation Framework (RAF) には、環境生成ウィザード (Env Gen Wizard、別名 Environment Generation Wizard) のアクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005801_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_automation_framework"/>
    <sec:identifier>JVNDB-2012-005801</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6369:1password: Cross-site scripting (XSS) vulnerability in the Tro...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6369_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6369_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6369_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Troubleshooting Reporting System feature in AgileBits 1Password 3.9.9 might allow remote attackers to inject arbitrary web script or HTML via a crafted User-Agent HTTP header that is not properly handled in a View Troubleshooting Report action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6369_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilebits:1password:3.9.9"/>
    <sec:identifier>CVE-2012-6369</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5445:skinny_client_control_protocol_software, unified_ip_phone, unified_ip_phone_7906g: The kernel in Cisco Native Unix (CNU) on Cisco Unif...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5445_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5445_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5445_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a crafted binary.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5445_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:unified_ip_phone:7906g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7911g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7935"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7936"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7940"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7940g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7941g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7960"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7960g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7961g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7970g"/>
    <category term="cpe:/h:cisco:unified_ip_phone:7971g"/>
    <category term="cpe:/h:cisco:unified_ip_phone_7906g:7911g"/>
    <category term="cpe:/h:cisco:unified_ip_phone_7906g:7941g"/>
    <category term="cpe:/h:cisco:unified_ip_phone_7906g:7961g"/>
    <category term="cpe:/h:cisco:unified_ip_phone_7906g:7970g"/>
    <category term="cpe:/h:cisco:unified_ip_phone_7906g:7971g"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.0%289%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.1%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.2%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.3%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.3%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.3%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.3%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.3%284%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.4%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:1.4%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:2.0%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:2.0%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.0"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.0%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.0%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.0%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%2810%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%2811%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.1%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2810%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2811%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2812%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2813%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2814%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%2815%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%286a%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%287%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%288%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.2%289%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2810%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2811%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2812%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2813%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2814%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2815%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2816%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%2820%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%287%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%288%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:3.3%289%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.0%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:4.1%287%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%281a%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:5.0%287%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%282%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%283%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.0%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.1%280%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:6.1%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.0%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.0%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.0%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.1%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.2%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.2%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:7.2%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%2810%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%284%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%284%29:sr3a"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%286%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%287%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%288%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.0%289%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.1%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.1%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.2%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.2%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.2%282%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.2%282%29:sr3"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.2%282%29:sr4"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%283%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%283%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.3%285%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.4%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.4%281%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.4%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.4%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.4%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.5%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.5%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.5%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.5%283%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.5%284%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:8.70"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.0%282%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.0%282%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.0%283%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.0%283b%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.1%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.1%281%29:sr1"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.1%281%29:sr2"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.2%281%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.2%282%29"/>
    <category term="cpe:/o:cisco:skinny_client_control_protocol_software:9.2%284%29 and previous versions"/>
    <sec:identifier>CVE-2012-5445</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4932:simple_invoices: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4932_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4932_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4932_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in SimpleInvoices before stable-2012-1-CIS3000 allow remote attackers to inject arbitrary web script or HTML via (1) the having parameter in a manage action to index.php; (2) the Email field in an Add User action; (3) the Customer Name field in an Add Customer action; the (4) Street address, (5) Street address 2, (6) City, (7) Zip code, (8) State, (9) Country, (10) Mobile Phone, (11) Phone, (12) Fax, (13) Email, (14) PayPal business name, (1...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4932_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simple_invoices:simple_invoices:2006-12-11"/>
    <category term="cpe:/a:simple_invoices:simple_invoices:2007-01-25"/>
    <category term="cpe:/a:simple_invoices:simple_invoices:2007-02-02"/>
    <category term="cpe:/a:simple_invoices:simple_invoices:2007-05-25"/>
    <category term="cpe:/a:simple_invoices:simple_invoices:2011.1 and previous versions"/>
    <sec:identifier>CVE-2012-4932</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4528:mod_security2: The mod_security2 module before 2.7.0 for the Apach...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4528_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4528_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4528_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The mod_security2 module before 2.7.0 for the Apache HTTP Server allows remote attackers to bypass rules, and deliver arbitrary POST data to a PHP application, via a multipart request in which an invalid part precedes the crafted data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4528_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:modsecurity:mod_security2:2.0.0:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.0.1:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.0.2:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.0.3:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.0.4:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.0:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.1:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.2:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.3:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.4:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.5:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.6:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.1.7:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.0:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.10:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.11:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.12.:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.13:dev1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.1:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.2:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.3:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.4:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.5:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.6:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.7:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.8:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.5.9:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.0:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.0:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.0:rc2:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.1:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.1:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.2:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.2:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.3:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.4:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.4:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.5:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.6:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.7:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.6.8:-:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.7.0:rc1:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.7.0:rc2:%7E%7E%7E%7Eapache_http_server%7E"/>
    <category term="cpe:/a:modsecurity:mod_security2:2.7.0:rc3:%7E%7E%7E%7Eapache_http_server%7E and previous versions"/>
    <sec:identifier>CVE-2012-4528</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3873:openconstructor: Multiple SQL injection vulnerabilities in Open Cons...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3873_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3873_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3873_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in Open Constructor 3.12.0 allow remote authenticated users to execute arbitrary SQL commands via the id parameter to (1) data/gallery/edit.php, (2) data/guestbook/edit.php, (3) data/file/edit.php, (4) data/htmltext/edit.php, (5) data/publication/edit.php, or (6) data/event/edit.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3873_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openconstructor_project:openconstructor:3.12.0"/>
    <sec:identifier>CVE-2012-3873</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3872:openconstructor: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3872_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3872_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3872_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Open Constructor 3.12.0 allow remote attackers to inject arbitrary web script or HTML via (1) the result parameter to data/file/edit.php, (2) the q parameter to confirm.php, or (3) the keyword parameter to users/users.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3872_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openconstructor_project:openconstructor:3.12.0"/>
    <sec:identifier>CVE-2012-3872</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3871:openconstructor: Cross-site scripting (XSS) vulnerability in data/hy...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3871_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3871_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3871_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in data/hybrid/i_hybrid.php in Open Constructor 3.12.0 allows remote authenticated users to inject arbitrary web script or HTML via the header parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3871_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openconstructor_project:openconstructor:3.12.0"/>
    <sec:identifier>CVE-2012-3871</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3870:openconstructor: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3870_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3870_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3870_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in objects/createobject.php in Open Constructor 3.12.0 allow remote authenticated users to inject arbitrary web script or HTML via the (1) name or (2) description parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3870_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openconstructor_project:openconstructor:3.12.0"/>
    <sec:identifier>CVE-2012-3870</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0741:rational_policy_tester, security_appscan: IBM Security AppScan Enterprise before 8.6.0.2 and ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0741_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0741_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0741_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Security AppScan Enterprise before 8.6.0.2 and Rational Policy Tester before 8.5.0.3 do not validate X.509 certificates during use of the Manual Explore Proxy feature, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0741_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_policy_tester:5.4.0.1"/>
    <category term="cpe:/a:ibm:rational_policy_tester:5.5"/>
    <category term="cpe:/a:ibm:rational_policy_tester:5.6"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.0"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5.0.1"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5.0.2 and previous versions"/>
    <category term="cpe:/a:ibm:security_appscan:5.4::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:5.5::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:5.6::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.0::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.5::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.6.0.1::enterprise and previous versions"/>
    <category term="cpe:/a:ibm:security_appscan:8.6::enterprise"/>
    <sec:identifier>CVE-2012-0741</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0738:rational_policy_tester, security_appscan: IBM Security AppScan Enterprise before 8.6.0.2 and ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0738_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0738_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0738_AD_1.html</id>
    <published>2012-12-28T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Security AppScan Enterprise before 8.6.0.2 and Rational Policy Tester before 8.5.0.3 do not validate X.509 certificates during scanning, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0738_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_policy_tester:5.4.0.1"/>
    <category term="cpe:/a:ibm:rational_policy_tester:5.5"/>
    <category term="cpe:/a:ibm:rational_policy_tester:5.6"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.0"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5.0.1"/>
    <category term="cpe:/a:ibm:rational_policy_tester:8.5.0.2 and previous versions"/>
    <category term="cpe:/a:ibm:security_appscan:5.4::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:5.5::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:5.6::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.0::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.5::enterprise"/>
    <category term="cpe:/a:ibm:security_appscan:8.6.0.1::enterprise and previous versions"/>
    <category term="cpe:/a:ibm:security_appscan:8.6::enterprise"/>
    <sec:identifier>CVE-2012-0738</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2012-5664:ruby_on_rails: SQL injection vulnerability in the Authlogic gem fo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_2.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Authlogic gem for Ruby on Rails allows remote attackers to execute arbitrary SQL commands via a crafted parameter in conjunction with a secret_token value, related to certain behavior of find_by_id and other find_by_ methods.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rubyonrails:ruby_on_rails:-"/>
    <sec:identifier>CVE-2012-5664</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005800:NetIQ eDirectory &#12398; Novell NCP &#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005800_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005800_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005800_AD_1.html</id>
    <published>2012-12-27T14:20:36+09:00</published>
    <updated>2012-12-27T14:20:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NetIQ eDirectory の Novell NCP の実装には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005800_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory"/>
    <sec:identifier>JVNDB-2012-005800</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005799:Windows &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; NetIQ eDirectory &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12481;&#12455;&#12483;&#12463;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005799_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005799_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005799_AD_1.html</id>
    <published>2012-12-27T14:20:01+09:00</published>
    <updated>2012-12-27T14:20:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する NetIQ eDirectory には、管理者の Cookie を取得され、認証チェックを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005799_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory"/>
    <sec:identifier>JVNDB-2012-005799</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005798:Windows &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; NetIQ eDirectory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005798_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005798_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005798_AD_1.html</id>
    <published>2012-12-27T14:15:15+09:00</published>
    <updated>2012-12-27T14:15:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する NetIQ eDirectory の dhost には、サービス運用妨害 (デーモンクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005798_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory"/>
    <sec:identifier>JVNDB-2012-005798</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005797:NetIQ eDirectory &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005797_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005797_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005797_AD_1.html</id>
    <published>2012-12-27T14:14:03+09:00</published>
    <updated>2012-12-27T14:14:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NetIQ eDirectory には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005797_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory"/>
    <sec:identifier>JVNDB-2012-005797</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005796:NetIQ Privileged User Manager &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; Perl &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005796_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005796_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005796_AD_1.html</id>
    <published>2012-12-27T14:12:23+09:00</published>
    <updated>2012-12-27T14:12:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NetIQ Privileged User Manager の unifid.exe 内の ldapagnt.dll の ldapagnt_eval 関数には、Eval インジェクションにより、任意の Perl コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005796_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager"/>
    <sec:identifier>JVNDB-2012-005796</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005795:NetIQ Privileged User Manager &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005795_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005795_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005795_AD_1.html</id>
    <published>2012-12-27T14:11:36+09:00</published>
    <updated>2012-12-27T14:11:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NetIQ Privileged User Manager の unifid.exe 内の regclnt.dll の set_log_config 関数には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005795_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager"/>
    <sec:identifier>JVNDB-2012-005795</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005794:NetIQ Privileged User Manager &#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#29992;&#12450;&#12459;&#12454;&#12531;&#12488;&#12398;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005794_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005794_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005794_AD_1.html</id>
    <published>2012-12-27T14:04:30+09:00</published>
    <updated>2012-12-27T14:04:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NetIQ Privileged User Manager の unifid.exe 内の auth.dll の pa_modify_accounts 関数は、modifyAccounts メソッドに対して認証を要求しないため、管理用アカウントのパスワードを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005794_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager"/>
    <sec:identifier>JVNDB-2012-005794</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005793:D-Link DCS-932L &#12459;&#12513;&#12521;&#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005793_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005793_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005793_AD_1.html</id>
    <published>2012-12-27T12:11:33+09:00</published>
    <updated>2012-12-27T12:11:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
D-Link DCS-932L カメラには、パスワードを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005793_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link:dcs-932l_camera"/>
    <category term="cpe:/o:d-link:dcs-932l_camera_firmware"/>
    <sec:identifier>JVNDB-2012-005793</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005792:Novell iPrint Client &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005792_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005792_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005792_AD_1.html</id>
    <published>2012-12-27T12:10:40+09:00</published>
    <updated>2012-12-27T12:10:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell iPrint Client には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005792_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:iprint"/>
    <sec:identifier>JVNDB-2012-005792</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6432:symfony: Symfony 2.0.x before 2.0.20, 2.1.x before 2.1.5, an...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6432_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6432_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6432_AD_1.html</id>
    <published>2012-12-27T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Symfony 2.0.x before 2.0.20, 2.1.x before 2.1.5, and 2.2-dev, when the internal routes configuration is enabled, allows remote attackers to access arbitrary services via vectors involving a URI beginning with a /_internal substring.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6432_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony:2.0.0"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.1"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.10"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.11"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.12"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.13"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.14"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.15"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.16"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.17"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.18"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.19"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.2"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.20"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.3"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.4"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.5"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.6"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.7"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.8"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.9"/>
    <category term="cpe:/a:sensiolabs:symfony:2.1.0"/>
    <category term="cpe:/a:sensiolabs:symfony:2.1.1"/>
    <category term="cpe:/a:sensiolabs:symfony:2.1.2"/>
    <category term="cpe:/a:sensiolabs:symfony:2.1.3"/>
    <category term="cpe:/a:sensiolabs:symfony:2.2:dev"/>
    <sec:identifier>CVE-2012-6432</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6431:symfony: Symfony 2.0.x before 2.0.20 does not process URL en...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6431_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6431_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6431_AD_1.html</id>
    <published>2012-12-27T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Symfony 2.0.x before 2.0.20 does not process URL encoded data consistently within the Routing and Security components, which allows remote attackers to bypass intended URI restrictions via a doubly encoded string.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6431_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony:2.0.0"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.1"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.10"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.11"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.12"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.13"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.14"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.15"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.16"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.17"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.18"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.19"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.2"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.3"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.4"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.5"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.6"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.7"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.8"/>
    <category term="cpe:/a:sensiolabs:symfony:2.0.9"/>
    <sec:identifier>CVE-2012-6431</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5868:wordpress: WordPress 3.4.2 does not invalidate a wordpress_sec...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5868_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5868_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5868_AD_1.html</id>
    <published>2012-12-27T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
WordPress 3.4.2 does not invalidate a wordpress_sec session cookie upon an administrator's logout action, which makes it easier for remote attackers to discover valid session identifiers via a brute-force attack, or modify data via a replay attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5868_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress:wordpress:3.4.2"/>
    <sec:identifier>CVE-2012-5868</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5532:linux_kernel: The main function in tools/hv/hv_kvp_daemon.c in hy...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5532_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5532_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5532_AD_1.html</id>
    <published>2012-12-27T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.8-rc1, allows local users to cause a denial of service (daemon exit) via a crafted application that sends a Netlink message.  NOTE: this vulnerability exists because of an incorrect fix for CVE-2012-2669.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5532_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.0.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.31"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.32"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.33"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.34"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.35"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.36"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.37"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.38"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.39"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.40"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.41"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.42"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.43"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.44"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.6.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.7.1 and previous versions"/>
    <sec:identifier>CVE-2012-5532</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2669:linux_kernel: The main function in tools/hv/hv_kvp_daemon.c in hy...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2669_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2669_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2669_AD_1.html</id>
    <published>2012-12-27T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.4.5, does not validate the origin of Netlink messages, which allows local users to spoof Netlink communication via a crafted connector message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2669_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <sec:identifier>CVE-2012-2669</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6314:xendesktop: Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6314_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6314_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6314_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does not propagate changes to the VDA, which allows authenticated users to retain access to the USB device.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6314_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xendesktop:5.6"/>
    <sec:identifier>CVE-2012-6314</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5625:folsom, grizzly: OpenStack Compute (Nova) Folsom before 2012.2.2 and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5625_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5625_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5625_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain sensitive information by reading the memory of the previous logical volume (LV).&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5625_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:folsom:2012.2"/>
    <category term="cpe:/a:openstack:grizzly:-"/>
    <sec:identifier>CVE-2012-5625</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5483:keystone: tools/sample_data.sh in OpenStack Keystone 2012.1.3...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5483_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5483_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5483_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
tools/sample_data.sh in OpenStack Keystone 2012.1.3, when access to Amazon Elastic Compute Cloud (Amazon EC2) is configured, uses world-readable permissions for /etc/keystone/ec2rc, which allows local users to obtain access to EC2 services by reading administrative access and secret values from this file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5483_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:keystone:2012.1.3"/>
    <sec:identifier>CVE-2012-5483</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5161:xenapp: The XML Service interface in Citrix XenApp 6.5 and ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5161_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5161_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5161_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5161_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenapp:6.5.0.0"/>
    <category term="cpe:/a:citrix:xenapp:6.5.0.0:fp1"/>
    <sec:identifier>CVE-2012-5161</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0962:aptdaemon, ubuntu_linux: Aptdaemon 0.43 in Ubuntu 11.10 and 12.04 LTS uses s...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0962_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0962_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0962_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Aptdaemon 0.43 in Ubuntu 11.10 and 12.04 LTS uses short IDs when importing PPA GPG keys from a keyserver, which allows remote attackers to install arbitrary package repository GPG keys via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0962_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sebastian_heinlein:aptdaemon:0.43"/>
    <category term="cpe:/o:canonical:ubuntu_linux:11.10:-:lts"/>
    <category term="cpe:/o:canonical:ubuntu_linux:12.04:-:lts"/>
    <sec:identifier>CVE-2012-0962</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0961:apt: Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0961_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0961_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0961_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu13.6, 0.8.16~exp12ubuntu10.x before 0.8.16~exp12ubuntu10.7, and 0.9.7.5ubuntu5.x before 0.9.7.5ubuntu5.2, as used in Ubuntu, uses world-readable permissions for /var/log/apt/term.log, which allows local users to obtain sensitive shell information by reading the log file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0961_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:debian:apt:0.8.16"/>
    <category term="cpe:/a:debian:apt:0.9.7"/>
    <sec:identifier>CVE-2012-0961</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0958:unity-firefox-extension: content/unity-api.js in the unity-firefox-extension...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0958_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0958_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0958_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
content/unity-api.js in the unity-firefox-extension extension 2.4.1 for Firefox exposes the toDataURL function in an API call, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted webpage.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0958_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.4.1:-:%7E%7E%7Efirefox%7E%7E"/>
    <sec:identifier>CVE-2012-0958</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6299:identityminder: Unspecified vulnerability in CA IdentityMinder r12....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6299_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6299_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6299_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to bypass intended access restrictions via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6299_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:identityminder:r12.0:cr16 and previous versions"/>
    <category term="cpe:/a:ca:identityminder:r12.5:sp1"/>
    <category term="cpe:/a:ca:identityminder:r12.5:sp14"/>
    <category term="cpe:/a:ca:identityminder:r12.6:ga"/>
    <sec:identifier>CVE-2012-6299</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6298:identityminder: Unspecified vulnerability in CA IdentityMinder r12....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6298_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6298_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6298_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attackers to execute arbitrary commands or modify data via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6298_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:identityminder:r12.0:cr16 and previous versions"/>
    <category term="cpe:/a:ca:identityminder:r12.5:sp1"/>
    <category term="cpe:/a:ca:identityminder:r12.5:sp14"/>
    <category term="cpe:/a:ca:identityminder:r12.6:ga"/>
    <sec:identifier>CVE-2012-6298</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5664:ruby_on_rails: SQL injection vulnerability in the Authlogic gem fo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Authlogic gem for Ruby on Rails allows remote attackers to execute arbitrary SQL commands via a crafted parameter in conjunction with a secret_token value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5664_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rubyonrails:ruby_on_rails:-"/>
    <sec:identifier>CVE-2012-5664</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4616:data_protection_advisor: Directory traversal vulnerability in the Web UI in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4616_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4616_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4616_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the Web UI in EMC Data Protection Advisor (DPA) 5.6 through SP1, 5.7 through SP1, and 5.8 through SP4 allows remote attackers to read arbitrary files via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4616_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:data_protection_advisor:5.6"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.6:sp1"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.7"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.7:sp1"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.8"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.8:sp1"/>
    <category term="cpe:/a:emc:data_protection_advisor:5.8:sp4"/>
    <sec:identifier>CVE-2012-4616</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5951:tivoli_netview: Unspecified vulnerability in IBM Tivoli NetView 1.4...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5951_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5951_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5951_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in IBM Tivoli NetView 1.4, 5.1 through 5.4, and 6.1 on z/OS allows local users to gain privileges by leveraging access to the normal Unix System Services (USS) security level.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5951_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_netview:1.4"/>
    <category term="cpe:/a:ibm:tivoli_netview:5.1"/>
    <category term="cpe:/a:ibm:tivoli_netview:5.2"/>
    <category term="cpe:/a:ibm:tivoli_netview:5.3"/>
    <category term="cpe:/a:ibm:tivoli_netview:5.4"/>
    <category term="cpe:/a:ibm:tivoli_netview:6.1"/>
    <category term="cpe:/o:ibm:z%2Fos"/>
    <sec:identifier>CVE-2012-5951</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4816:rational_automation_framework: IBM Rational Automation Framework (RAF) 3.x through...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4816_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4816_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4816_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Rational Automation Framework (RAF) 3.x through 3.0.0.5 allows remote attackers to bypass intended Env Gen Wizard (aka Environment Generation Wizard) access restrictions by visiting context roots in HTTP sessions on port 8080.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4816_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0"/>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0.0.1"/>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0.0.2"/>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0.0.3"/>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0.0.4"/>
    <category term="cpe:/a:ibm:rational_automation_framework:3.0.0.5"/>
    <sec:identifier>CVE-2012-4816</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5591:zeropoint: Cross-site scripting (XSS) vulnerability in the Zer...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5591_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5591_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5591_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Zero Point module 6.x-1.x before 6.x-1.18 and 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via the path aliases.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5591_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.0"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.1"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.10"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.11"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.12"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.13"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.14"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.15"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.16"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.17"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.2"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.3"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.4"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.5"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.6"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.7"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.8"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.9"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:6.x-1.x:dev"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:7.x-1.0"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:7.x-1.1"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:7.x-1.2"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:7.x-1.3"/>
    <category term="cpe:/a:catalin_florian_radut:zeropoint:7.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5591</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5590:webmail_plus: SQL injection vulnerability in the Webmail Plus mod...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5590_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5590_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5590_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Webmail Plus module for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5590_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:scripthead:webmail_plus:-"/>
    <sec:identifier>CVE-2012-5590</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5589:multilink: The MultiLink module 6.x-2.x before 6.x-2.7 and 7.x...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5589_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5589_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5589_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The MultiLink module 6.x-2.x before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal does not properly check node permissions when generating an in-content link, which allows remote authenticated users with text-editing permissions to read arbitrary node titles via a generated link.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5589_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.0"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.1"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.2"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.3"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.4"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.5"/>
    <category term="cpe:/a:netgenius:multilink:6.x-2.6"/>
    <category term="cpe:/a:netgenius:multilink:7.x-2.x:dev"/>
    <sec:identifier>CVE-2012-5589</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5588:email: The Email Field module 6.x-1.x before 6.x-1.3 for D...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5588_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5588_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5588_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Email Field module 6.x-1.x before 6.x-1.3 for Drupal, when using a field permission module and the field contact field formatter is set to the full or teaser display mode, does not properly check permissions, which allows remote attackers to email the stored address via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5588_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:epiqo:email:6.x-1.0"/>
    <category term="cpe:/a:epiqo:email:6.x-1.0:rc1"/>
    <category term="cpe:/a:epiqo:email:6.x-1.1"/>
    <category term="cpe:/a:epiqo:email:6.x-1.2"/>
    <category term="cpe:/a:epiqo:email:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5588</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5587:email: Cross-site scripting (XSS) vulnerability in the Ema...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5587_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5587_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5587_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Email Field module 6.x-1.x before 6.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the mailto link.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5587_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:epiqo:email:6.x-1.0"/>
    <category term="cpe:/a:epiqo:email:6.x-1.0:rc1"/>
    <category term="cpe:/a:epiqo:email:6.x-1.1"/>
    <category term="cpe:/a:epiqo:email:6.x-1.2"/>
    <category term="cpe:/a:epiqo:email:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5587</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5586:services: The Services module 6.x-3.x before 6.x-3.3 and 7.x-...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5586_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5586_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5586_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Services module 6.x-3.x before 6.x-3.3 and 7.x-3.x before 7.x-3.3 for Drupal allows remote authenticated users with the &quot;access user profiles&quot; permission to access arbitrary users' emails via vectors related to the &quot;user index method&quot; and &quot;the path to the user resource.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5586_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:alpha1"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:beta1"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:beta2"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:rc1"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:rc2"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:rc3"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:rc4"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:unstable1"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:unstable2"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.0:unstable3"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.1"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.2"/>
    <category term="cpe:/a:marc_ingram:services:6.x-3.x:dev"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:beta1"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:beta2"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc1"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc2"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc3"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc4"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc5"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.0:rc6"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.1"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.2"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.3"/>
    <category term="cpe:/a:marc_ingram:services:7.x-3.x:dev"/>
    <sec:identifier>CVE-2012-5586</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5585:mixpanel: Cross-site scripting (XSS) vulnerability in the Mix...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5585_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5585_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5585_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Mixpanel module 6.x-1.x before 6.x-1.1 in Drupal allows remote authenticated users with the &quot;access administration pages&quot; permission to inject arbitrary web script or HTML via the Maxpanel token.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5585_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:mixpanel_project:mixpanel:6.x-1.0"/>
    <category term="cpe:/a:mixpanel_project:mixpanel:6.x-1.0:beta1"/>
    <category term="cpe:/a:mixpanel_project:mixpanel:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5585</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5584:tableofcontents: The Table of Contents module 6.x-3.x before 6.x-3.8...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5584_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5584_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5584_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Table of Contents module 6.x-3.x before 6.x-3.8 for Drupal does not properly check node permissions, which allows remote attackers to read a node's headers by accessing a table of contents block.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5584_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.0"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.1"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.2"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.3"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.4"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.5"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.6"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.7"/>
    <category term="cpe:/a:m2osw:tableofcontents:6.x-3.x:dev"/>
    <sec:identifier>CVE-2012-5584</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5183:loctouch: The Loctouch application 3.4.6 and earlier for Andr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5183_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5183_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5183_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Loctouch application 3.4.6 and earlier for Android allows attackers to obtain sensitive information about logged locations via a crafted application that leverages read permission for system log files.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5183_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:naver:loctouch:3.4.6 and previous versions"/>
    <sec:identifier>CVE-2012-5183</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5182:loctouch: The Loctouch application 3.4.6 and earlier for Andr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5182_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5182_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5182_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Loctouch application 3.4.6 and earlier for Android does not properly handle implicit intents, which allows attackers to obtain sensitive information about logged locations via a crafted application.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5182_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:naver:loctouch:3.4.6 and previous versions"/>
    <sec:identifier>CVE-2012-5182</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5180:opera_mini, opera_mobile: The Opera Mobile application before 12.1 and Opera ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5180_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5180_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5180_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Opera Mobile application before 12.1 and Opera Mini application before 7.5 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5180_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opera:opera_mini:7.4:-:%7E%7E%7Eandroid%7E%7E and previous versions"/>
    <category term="cpe:/a:opera:opera_mobile:12.0:-:%7E%7E%7Eandroid%7E%7E and previous versions"/>
    <sec:identifier>CVE-2012-5180</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5179:android, boat_browser_mini: The Boat Browser application before 4.2 and Boat Br...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5179_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5179_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5179_AD_1.html</id>
    <published>2012-12-26T00:00:00+09:00</published>
    <updated>2012-12-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Boat Browser application before 4.2 and Boat Browser Mini application before 3.9 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5179_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boatmob:boat_browser:2.0"/>
    <category term="cpe:/a:boatmob:boat_browser:2.1"/>
    <category term="cpe:/a:boatmob:boat_browser:2.2"/>
    <category term="cpe:/a:boatmob:boat_browser:2.3"/>
    <category term="cpe:/a:boatmob:boat_browser:2.4.1"/>
    <category term="cpe:/a:boatmob:boat_browser:2.5.1"/>
    <category term="cpe:/a:boatmob:boat_browser:2.6"/>
    <category term="cpe:/a:boatmob:boat_browser:3.0"/>
    <category term="cpe:/a:boatmob:boat_browser:3.1"/>
    <category term="cpe:/a:boatmob:boat_browser:3.2.1"/>
    <category term="cpe:/a:boatmob:boat_browser:3.3"/>
    <category term="cpe:/a:boatmob:boat_browser:4.1 and previous versions"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.6.1"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.7"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.7.1"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.8"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.9"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.9.1"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:2.9.2"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.0.1"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.0.2"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.1"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.2"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.4"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.5"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.6"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.7"/>
    <category term="cpe:/a:boatmob:boat_browser_mini:3.8 and previous versions"/>
    <category term="cpe:/o:google:android"/>
    <sec:identifier>CVE-2012-5179</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0432:edirectory: Stack-based buffer overflow in the Novell NCP imple...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0432_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0432_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0432_AD_1.html</id>
    <published>2012-12-25T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0432_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory:8.8.7.0"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.1"/>
    <sec:identifier>CVE-2012-0432</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0430:edirectory: Unspecified vulnerability in NetIQ eDirectory 8.8.6...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0430_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0430_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0430_AD_1.html</id>
    <published>2012-12-25T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in NetIQ eDirectory 8.8.6.x before 8.8.6.7 and 8.8.7.x before 8.8.7.2 on Windows allows remote attackers to obtain an administrator cookie and bypass authorization checks via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0430_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory:8.8.6.0:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.1:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.2:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.3:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.4:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.5:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.6:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.0:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.1:-:%7E%7E%7Ewindows%7E%7E"/>
    <sec:identifier>CVE-2012-0430</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0429:edirectory: dhost in NetIQ eDirectory 8.8.6.x before 8.8.6.7 an...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0429_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0429_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0429_AD_1.html</id>
    <published>2012-12-25T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
dhost in NetIQ eDirectory 8.8.6.x before 8.8.6.7 and 8.8.7.x before 8.8.7.2 on Windows allows remote authenticated users to cause a denial of service (daemon crash) via crafted characters in an HTTP request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0429_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory:8.8.6.0:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.1:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.2:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.3:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.4:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.5:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.6:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.0:-:%7E%7E%7Ewindows%7E%7E"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.1:-:%7E%7E%7Ewindows%7E%7E"/>
    <sec:identifier>CVE-2012-0429</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0428:edirectory: Cross-site scripting (XSS) vulnerability in NetIQ e...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0428_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0428_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0428_AD_1.html</id>
    <published>2012-12-25T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in NetIQ eDirectory 8.8.6.x before 8.8.6.7 and 8.8.7.x before 8.8.7.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0428_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:edirectory:8.8.6.0"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.1"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.2"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.3"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.4"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.5"/>
    <category term="cpe:/a:netiq:edirectory:8.8.6.6"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.0"/>
    <category term="cpe:/a:netiq:edirectory:8.8.7.1"/>
    <sec:identifier>CVE-2012-0428</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5932:privileged_user_manager: Eval injection vulnerability in the ldapagnt_eval f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5932_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5932_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5932_AD_1.html</id>
    <published>2012-12-24T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Eval injection vulnerability in the ldapagnt_eval function in ldapagnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote attackers to execute arbitrary Perl code via a crafted application/x-amf request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5932_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.0"/>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.1"/>
    <sec:identifier>CVE-2012-5932</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5931:privileged_user_manager: Directory traversal vulnerability in the set_log_co...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5931_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5931_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5931_AD_1.html</id>
    <published>2012-12-24T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the set_log_config function in regclnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote authenticated users to create or overwrite arbitrary files via directory traversal sequences in a log pathname.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5931_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.0"/>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.1"/>
    <sec:identifier>CVE-2012-5931</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5930:privileged_user_manager: The pa_modify_accounts function in auth.dll in unif...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5930_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5930_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5930_AD_1.html</id>
    <published>2012-12-24T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The pa_modify_accounts function in auth.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 does not require authentication for the modifyAccounts method, which allows remote attackers to change the passwords of administrative accounts via a crafted application/x-amf request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5930_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.0"/>
    <category term="cpe:/a:netiq:privileged_user_manager:2.3.1"/>
    <sec:identifier>CVE-2012-5930</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4046:dcs-932l_camera, dcs-932l_camera_firmware: The D-Link DCS-932L camera with firmware 1.02 allow...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4046_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4046_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4046_AD_1.html</id>
    <published>2012-12-24T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The D-Link DCS-932L camera with firmware 1.02 allows remote attackers to discover the password via a UDP broadcast packet, as demonstrated by running the D-Link Setup Wizard and reading the _paramR[&quot;P&quot;] value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4046_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link:dcs-932l_camera:-"/>
    <category term="cpe:/o:d-link:dcs-932l_camera_firmware:1.02"/>
    <sec:identifier>CVE-2012-4046</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0411:iprint: Unspecified vulnerability in Novell iPrint Client b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0411_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0411_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0411_AD_1.html</id>
    <published>2012-12-24T00:00:00+09:00</published>
    <updated>2012-12-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0411_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:iprint:4.26"/>
    <category term="cpe:/a:novell:iprint:4.27"/>
    <category term="cpe:/a:novell:iprint:4.28"/>
    <category term="cpe:/a:novell:iprint:4.30"/>
    <category term="cpe:/a:novell:iprint:4.32"/>
    <category term="cpe:/a:novell:iprint:4.34"/>
    <category term="cpe:/a:novell:iprint:4.36"/>
    <category term="cpe:/a:novell:iprint:4.38"/>
    <category term="cpe:/a:novell:iprint:5.04"/>
    <category term="cpe:/a:novell:iprint:5.12"/>
    <category term="cpe:/a:novell:iprint:5.20b"/>
    <category term="cpe:/a:novell:iprint:5.30"/>
    <category term="cpe:/a:novell:iprint:5.32"/>
    <category term="cpe:/a:novell:iprint:5.40"/>
    <category term="cpe:/a:novell:iprint:5.42"/>
    <category term="cpe:/a:novell:iprint:5.44"/>
    <category term="cpe:/a:novell:iprint:5.50"/>
    <category term="cpe:/a:novell:iprint:5.52"/>
    <category term="cpe:/a:novell:iprint:5.56"/>
    <category term="cpe:/a:novell:iprint:5.60"/>
    <category term="cpe:/a:novell:iprint:5.64"/>
    <category term="cpe:/a:novell:iprint:5.68"/>
    <category term="cpe:/a:novell:iprint:5.72"/>
    <category term="cpe:/a:novell:iprint:5.74"/>
    <category term="cpe:/a:novell:iprint:5.78 and previous versions"/>
    <sec:identifier>CVE-2012-0411</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005791:Carlo Gavazzi EOS-Box &#12398;&#12501;&#12449;&#12540;&#12512;&#12454;&#12455;&#12450;&#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#12450;&#12463;&#12475;&#12473;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005791_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005791_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005791_AD_1.html</id>
    <published>2012-12-25T16:37:52+09:00</published>
    <updated>2012-12-25T16:37:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Carlo Gavazzi EOS-Box のファームウェアには、複数のハードコードされたアカウントが存在するため、管理アクセス権限を取得される脆弱性が存在します。  本脆弱性は、CVE-2012-5862 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005791_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:carlosgavazzi:eos-box_photovoltaic_monitoring_system"/>
    <category term="cpe:/o:carlosgavazzi:eos-box_photovoltaic_monitoring_system_firmware"/>
    <sec:identifier>JVNDB-2012-005791</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005790:Carlo Gavazzi EOS-Box &#12398;&#12501;&#12449;&#12540;&#12512;&#12454;&#12455;&#12450;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005790_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005790_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005790_AD_1.html</id>
    <published>2012-12-25T16:33:24+09:00</published>
    <updated>2012-12-25T16:33:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Carlo Gavazzi EOS-Box のファームウェアには、SQL インジェクションの脆弱性が存在します。  本脆弱性は、CVE-2012-5861 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005790_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:carlosgavazzi:eos-box_photovoltaic_monitoring_system"/>
    <category term="cpe:/o:carlosgavazzi:eos-box_photovoltaic_monitoring_system_firmware"/>
    <sec:identifier>JVNDB-2012-005790</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005789:&#35079;&#25968;&#12398; Siemens &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005789_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005789_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005789_AD_1.html</id>
    <published>2012-12-25T16:32:19+09:00</published>
    <updated>2012-12-25T16:32:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Siemens 製品は、ハードコードされた秘密鍵を使用するため、サーバを偽装される、およびネットワークトラフィックを解読される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005789_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:siemens:ros"/>
    <category term="cpe:/o:siemens:rox_i_os"/>
    <category term="cpe:/o:siemens:rox_ii_os"/>
    <category term="cpe:/o:siemens:ruggedmax_os"/>
    <sec:identifier>JVNDB-2012-005789</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005788:VMware vCenter Server Appliance &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005788_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005788_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005788_AD_1.html</id>
    <published>2012-12-25T15:19:56+09:00</published>
    <updated>2012-12-25T15:19:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware vCenter Server Appliance  (vCSA) は、XML ドキュメントを適切に解析しないため、任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005788_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:vcenter_server_appliance"/>
    <sec:identifier>JVNDB-2012-005788</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005787:VMware vCenter Server Appliance &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005787_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005787_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005787_AD_1.html</id>
    <published>2012-12-25T15:19:07+09:00</published>
    <updated>2012-12-25T15:19:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware vCenter Server Appliance (vCSA) には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005787_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:vcenter_server_appliance"/>
    <sec:identifier>JVNDB-2012-005787</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005786:IBM Tivoli Storage Manager for Space Management &#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12471;&#12473;&#12486;&#12512;&#12458;&#12502;&#12472;&#12455;&#12463;&#12488;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005786_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005786_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005786_AD_1.html</id>
    <published>2012-12-25T15:17:37+09:00</published>
    <updated>2012-12-25T15:17:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Tivoli Storage Manager for Space Management (別名 TSM HSM) には、TSM HSM が管理しているファイルシステムオブジェクトを読まれる、または変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005786_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management"/>
    <sec:identifier>JVNDB-2012-005786</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005785:IBM Tivoli Storage Manager for Space Management  &#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12471;&#12473;&#12486;&#12512;&#12458;&#12502;&#12472;&#12455;&#12463;&#12488;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005785_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005785_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005785_AD_1.html</id>
    <published>2012-12-25T15:03:40+09:00</published>
    <updated>2012-12-25T15:03:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Tivoli Storage Manager for Space Management には、ファイルシステムオブジェクトを読まれる、または変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005785_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management"/>
    <sec:identifier>JVNDB-2012-005785</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005784:Linux Kernel &#12398; mm/memory_hotplug.c &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005784_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005784_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005784_AD_1.html</id>
    <published>2012-12-25T15:02:31+09:00</published>
    <updated>2012-12-25T15:02:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の mm/memory_hotplug.c 内の online_pages 関数には、サービス運用妨害 (NULL ポインタデリファレンスおよびシステムクラッシュ) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005784_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005784</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005783:Linux Kernel &#12398; net/ipv4/tcp_illinois.c &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005783_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005783_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005783_AD_1.html</id>
    <published>2012-12-25T14:30:19+09:00</published>
    <updated>2012-12-25T14:30:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の net/ipv4/tcp_illinois.c 内の tcp_illinois_info 関数は、net.ipv4.tcp_congestion_control illinois 設定が有効になっている場合、サービス運用妨害 (divide-by-zero エラーおよび OOPS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005783_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005783</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005782:Linux Kernel &#12398; fs/ext4/extents.c &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005782_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005782_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005782_AD_1.html</id>
    <published>2012-12-25T14:29:23+09:00</published>
    <updated>2012-12-25T14:29:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の fs/ext4/extents.c には、競合状態により、削除されたファイルから重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005782_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005782</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005781:Linux Kernel &#12398; net/ipv6/reassembly.c &#12395;&#12362;&#12369;&#12427;&#12493;&#12483;&#12488;&#12527;&#12540;&#12463;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005781_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005781_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005781_AD_1.html</id>
    <published>2012-12-25T14:25:46+09:00</published>
    <updated>2012-12-25T14:25:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の net/ipv6/reassembly.c の ip6_frag_queue 関数には、ネットワーク制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005781_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005781</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005780:Linux Kernel &#12398; kernel/sys.c &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005780_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005780_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005780_AD_1.html</id>
    <published>2012-12-25T14:12:41+09:00</published>
    <updated>2012-12-25T14:12:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の kernel/sys.c の override_release 関数には、カーネルスタックメモリから重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005780_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-005780</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005779:Fetchmail &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005779_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005779_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005779_AD_1.html</id>
    <published>2012-12-25T14:11:05+09:00</published>
    <updated>2012-12-25T14:11:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Fetchmail は、デバッグモードで NTLM 認証を使用する場合、(1) サービス運用妨害 (クラッシュおよび受信メールの遅延配信) 状態となる、または (2) メモリから重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005779_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:fetchmail:fetchmail"/>
    <sec:identifier>JVNDB-2012-005779</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005778:&#35079;&#25968;&#12398; Oracle &#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; DataDirect ODBC &#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005778_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005778_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005778_AD_1.html</id>
    <published>2012-12-25T14:09:30+09:00</published>
    <updated>2012-12-25T14:09:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Oracle 製品で使用される DataDirect ODBC ドライバには、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005778_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:essbase_server"/>
    <category term="cpe:/a:oracle:hyperion_interactive_reporting"/>
    <category term="cpe:/a:oracle:hyperion_production_reporting_server"/>
    <category term="cpe:/a:oracle:integration_services_server"/>
    <sec:identifier>JVNDB-2012-005778</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005777:Oracle Hyperion Financial Management &#12398; TList 6 ActiveX &#12467;&#12531;&#12488;&#12525;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005777_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005777_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005777_AD_1.html</id>
    <published>2012-12-25T14:08:09+09:00</published>
    <updated>2012-12-25T14:08:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Hyperion Financial Management の TList 6 ActiveX コントロールには、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005777_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:hyperion_financial_management"/>
    <sec:identifier>JVNDB-2012-005777</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005776:Oracle Sun GlassFish Web Space Server &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005776_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005776_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005776_AD_1.html</id>
    <published>2012-12-25T14:07:05+09:00</published>
    <updated>2012-12-25T14:07:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Sun GlassFish Web Space Server の Liferay コンポーネントには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005776_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:glassfish_web_space_server10.0"/>
    <sec:identifier>JVNDB-2012-005776</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005775:X.Org &#12362;&#12424;&#12403; XFree86 &#29992; xfs &#12501;&#12457;&#12531;&#12488;&#12469;&#12540;&#12496;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005775_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005775_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005775_AD_1.html</id>
    <published>2012-12-25T14:00:27+09:00</published>
    <updated>2012-12-25T14:00:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
X.Org および XFree86 用 xfs フォントサーバの difs/events.c 内の ProcSetEventMask 関数には、SendErrToClient 関数をコールする際に、ポインタではなく mask 値を使用するため、サービス運用妨害 (メモリ破損およびクラッシュ) 状態となる、またはメモリから重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005775_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:x.org:x11"/>
    <category term="cpe:/a:xfree86_project:xfree86"/>
    <sec:identifier>JVNDB-2012-005775</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005774:MySQL &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; yaSSL &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005774_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005774_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005774_AD_1.html</id>
    <published>2012-12-25T13:52:19+09:00</published>
    <updated>2012-12-25T13:52:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MySQL で使用される yaSSL には、バッファオーバーフローの脆弱性が存在します。  詳細が不明なため、本脆弱性は CVE-2012-0492 または他の CVE 識別番号の問題と重複する可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005774_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql"/>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-005774</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005773:ibxml2 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005773_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005773_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005773_AD_1.html</id>
    <published>2012-12-25T13:51:25+09:00</published>
    <updated>2012-12-25T13:51:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ibxml2 は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005773_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:xmlsoft:libxml2"/>
    <sec:identifier>JVNDB-2012-005773</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005772:Perl &#12398; File::Glob &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005772_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005772_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005772_AD_1.html</id>
    <published>2012-12-25T13:45:45+09:00</published>
    <updated>2012-12-25T13:45:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Perl の File::Glob モジュールの bsd_glob 関数には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005772_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:perl:perl"/>
    <sec:identifier>JVNDB-2012-005772</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005648:GNOME Display Manager &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005648_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005648_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005648_AD_1.html</id>
    <published>2012-12-25T13:44:56+09:00</published>
    <updated>2012-12-25T13:44:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GNOME Display Manager (gdm) の vicious-extensions/ve-misc.c は、GDM デバッグが有効になっている場合、無効な UTF8 エンコード文字を含むユーザパスワードを記録するため、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005648_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:display_manager"/>
    <sec:identifier>JVNDB-2010-005648</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6428:eos-box_photovoltaic_monitoring_system, eos-box_photovoltaic_monitoring_system_fi...: Carlo Gavazzi EOS-Box with firmware before 1.0.0.10...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6428_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6428_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6428_AD_1.html</id>
    <published>2012-12-23T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Carlo Gavazzi EOS-Box with firmware before 1.0.0.1080_2.1.10 establishes multiple hardcoded accounts, which makes it easier for remote attackers to obtain administrative access by reading a password in a PHP script, a similar issue to CVE-2012-5862.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6428_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:carlosgavazzi:eos-box_photovoltaic_monitoring_system:-"/>
    <category term="cpe:/o:carlosgavazzi:eos-box_photovoltaic_monitoring_system_firmware:1.0.0 and previous versions"/>
    <sec:identifier>CVE-2012-6428</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6427:eos-box_photovoltaic_monitoring_system, eos-box_photovoltaic_monitoring_system_fi...: Multiple SQL injection vulnerabilities in Carlo Gav...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6427_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6427_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6427_AD_1.html</id>
    <published>2012-12-23T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in Carlo Gavazzi EOS-Box with firmware before 1.0.0.1080_2.1.10 allow remote attackers to execute arbitrary SQL commands via unspecified vectors, a similar issue to CVE-2012-5861.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6427_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:carlosgavazzi:eos-box_photovoltaic_monitoring_system:-"/>
    <category term="cpe:/o:carlosgavazzi:eos-box_photovoltaic_monitoring_system_firmware:1.0.0 and previous versions"/>
    <sec:identifier>CVE-2012-6427</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4698:ros, rox_i_os, rox_ii_os, ruggedmax_os: Siemens RuggedCom Rugged Operating System (ROS) bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4698_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4698_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4698_AD_1.html</id>
    <published>2012-12-23T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Siemens RuggedCom Rugged Operating System (ROS) before 3.12, ROX I OS through 1.14.5, ROX II OS through 2.3.0, and RuggedMax OS through 4.2.1.4621.22 use hardcoded private keys for SSL and SSH communication, which makes it easier for man-in-the-middle attackers to spoof servers and decrypt network traffic by leveraging the availability of these keys within ROS files at all customer installations.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4698_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:siemens:ros:3.11.0 and previous versions"/>
    <category term="cpe:/o:siemens:rox_i_os:1.14.5 and previous versions"/>
    <category term="cpe:/o:siemens:rox_ii_os:2.3.0 and previous versions"/>
    <category term="cpe:/o:siemens:ruggedmax_os:4.2.1.4621.22 and previous versions"/>
    <sec:identifier>CVE-2012-4698</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6325:vcenter_server_appliance: VMware vCenter Server Appliance (vCSA) 5.0 before U...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6325_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6325_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6325_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 does not properly parse XML documents, which allows remote authenticated users to read arbitrary files via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6325_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:vcenter_server_appliance:5.0"/>
    <category term="cpe:/a:vmware:vcenter_server_appliance:5.0:update_1 and previous versions"/>
    <sec:identifier>CVE-2012-6325</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6324:vcenter_server_appliance: Directory traversal vulnerability in VMware vCenter...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6324_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6324_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6324_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 and 5.1 before Patch 1 allows remote authenticated users to read arbitrary files via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6324_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:vcenter_server_appliance:5.0"/>
    <category term="cpe:/a:vmware:vcenter_server_appliance:5.0:update_1 and previous versions"/>
    <category term="cpe:/a:vmware:vcenter_server_appliance:5.1 and previous versions"/>
    <sec:identifier>CVE-2012-6324</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5181:concrete5: Cross-site scripting (XSS) vulnerability in concret...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5181_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5181_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5181_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in concrete5 Japanese 5.5.1 through 5.5.2.1 and concrete5 English 5.5.0 through 5.6.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5181_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:concrete5:concrete5:5.5.0:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.1:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.1:-:-:ja-jp"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.2.1:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.2.1:-:-:ja-jp"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.2:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.5.2:-:-:ja-jp"/>
    <category term="cpe:/a:concrete5:concrete5:5.6.0.1:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.6.0.2:-:-:en-us"/>
    <category term="cpe:/a:concrete5:concrete5:5.6.0:-:-:en-us"/>
    <sec:identifier>CVE-2012-5181</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005771:Squid &#12398; cachemgr.cgi &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12513;&#12514;&#12522;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005771_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005771_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005771_AD_1.html</id>
    <published>2012-12-21T15:21:03+09:00</published>
    <updated>2012-12-21T15:21:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Squid の cachemgr.cgi 内の tools/cachemgr.cc には、メモリリークにより、サービス運用妨害 (メモリ消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005771_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:squid:squid_web_proxy_cache"/>
    <sec:identifier>JVNDB-2012-005771</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005770:SANLock &#12398; log.h &#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12467;&#12531;&#12486;&#12531;&#12484;&#12434;&#19978;&#26360;&#12365;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005770_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005770_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005770_AD_1.html</id>
    <published>2012-12-21T15:08:39+09:00</published>
    <updated>2012-12-21T15:08:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SANLock の log.h 内の setup_logging 関数は、/var/log/sanlock.log に対して、誰でも書き込みできる権限 (world-writable permissions) を使用するため、ファイルコンテンツを上書きされる、またはディスククオータ制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005770_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ovirt:sanlock"/>
    <sec:identifier>JVNDB-2012-005770</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005769:WordPress &#29992; Portable phpMyAdmin &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005769_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005769_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005769_AD_1.html</id>
    <published>2012-12-21T14:08:11+09:00</published>
    <updated>2012-12-21T14:08:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Portable phpMyAdmin プラグインには、認証を回避され、phpMyAdmin コンソールのアクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005769_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ciprian_popescu:portable_phpmyadmin"/>
    <sec:identifier>JVNDB-2012-005769</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005768:JBoss Application Server &#29992; IronJacamar &#12467;&#12531;&#12486;&#12490;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005768_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005768_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005768_AD_1.html</id>
    <published>2012-12-21T13:42:51+09:00</published>
    <updated>2012-12-21T13:42:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Application Server 用 IronJacamar コンテナは、allow-multiple-users がセキュリティドメインと合わせて有効である際、getConnection 関数呼び出しで付与される認証情報を使用しないため、任意のデータソースコネクションへのアクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005768_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jboss:ironjacamar"/>
    <sec:identifier>JVNDB-2012-005768</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000115:Android &#29256; &#12525;&#12465;&#12479;&#12483;&#12481;&#12395;&#12362;&#12369;&#12427;&#24773;&#22577;&#31649;&#29702;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000115_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000115_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000115_AD_1.html</id>
    <published>2012-12-21T12:02:54+09:00</published>
    <updated>2012-12-21T12:02:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NHN Japan 株式会社が提供するロケタッチは、位置情報を記録するアプリケーションです。Android 版 ロケタッチには、情報管理不備の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 三井物産セキュアディレクション株式会社 望月 岳 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000115_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:nhn_japan_loctouch"/>
    <sec:identifier>JVNDB-2012-000115</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000114:Android &#29256; &#12525;&#12465;&#12479;&#12483;&#12481;&#12395;&#12362;&#12369;&#12427;&#26263;&#40665;&#30340; Intent &#12398;&#25201;&#12356;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000114_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000114_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000114_AD_1.html</id>
    <published>2012-12-21T12:01:57+09:00</published>
    <updated>2012-12-21T12:01:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NHN Japan 株式会社が提供するロケタッチは、位置情報を記録するアプリケーションです。Android 版 ロケタッチには、暗黙的 Intent の扱いに関する脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 三井物産セキュアディレクション株式会社 望月 岳 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000114_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:nhn_japan_loctouch"/>
    <sec:identifier>JVNDB-2012-000114</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000113:concrete5 &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000113_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000113_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000113_AD_1.html</id>
    <published>2012-12-21T12:01:12+09:00</published>
    <updated>2012-12-21T12:01:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
concrete5 は、オープンソースのコンテンツ管理システム (CMS) です。concrete5 には、クロスサイトスクリプティングの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: bogus.jp 東内 裕二 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000113_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:concrete5_japan_concrete5"/>
    <sec:identifier>JVNDB-2012-000113</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005767:IBM WAS for z/OS &#12398; IBM HTTP Server &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005767_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005767_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005767_AD_1.html</id>
    <published>2012-12-21T11:50:19+09:00</published>
    <updated>2012-12-21T11:50:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Application Server (WAS) for z/OS の IBM HTTP Server コンポーネントには、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005767_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:http_server"/>
    <category term="cpe:/a:ibm:websphere_application_server"/>
    <sec:identifier>JVNDB-2012-005767</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005766:IBM Rational ClearQuest &#12398; Web &#12463;&#12521;&#12452;&#12450;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005766_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005766_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005766_AD_1.html</id>
    <published>2012-12-21T11:48:42+09:00</published>
    <updated>2012-12-21T11:48:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Rational ClearQuest の Web クライアントには、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005766_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_clearquest"/>
    <sec:identifier>JVNDB-2012-005766</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005765:IBM Rational ClearQuest &#12395;&#12362;&#12369;&#12427;&#12501;&#12451;&#12483;&#12471;&#12531;&#12464;&#25915;&#25731;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005765_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005765_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005765_AD_1.html</id>
    <published>2012-12-21T11:47:28+09:00</published>
    <updated>2012-12-21T11:47:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Rational ClearQuest の Web クライアント内の OSLC インターフェイスには、フィッシング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005765_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_clearquest"/>
    <sec:identifier>JVNDB-2012-005765</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5954:tivoli_storage_manager_for_space_management: Unspecified vulnerability in IBM Tivoli Storage Man...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5954_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5954_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5954_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in IBM Tivoli Storage Manager for Space Management (aka TSM HSM) before 6.2.5.0 and 6.3.x before 6.3.1.0 allows remote attackers to read or modify HSM-managed file system objects via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5954_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:5.5.0.0"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.1.0.0"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.2.0.0"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.2.4.4 and previous versions"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.3.0.0"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.3.0.17"/>
    <sec:identifier>CVE-2012-5954</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5517:linux_kernel: The online_pages function in mm/memory_hotplug.c in...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5517_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5517_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5517_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The online_pages function in mm/memory_hotplug.c in the Linux kernel before 3.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact in opportunistic circumstances by using memory that was hot-added by an administrator.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5517_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.0.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.31"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.32"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.33"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.34"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.35"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.36"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.37"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.38"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.39"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.40"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.41"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.42"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.43"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.44"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.7 and previous versions"/>
    <sec:identifier>CVE-2012-5517</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4859:tivoli_storage_manager_for_space_management: Unspecified vulnerability in IBM Tivoli Storage Man...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4859_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4859_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4859_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in IBM Tivoli Storage Manager for Space Management (aka TSM HSM) before 6.2.5.0 and 6.3.x before 6.3.1.0 allows local users to read or modify file system objects via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4859_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.1.0"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.2.0 and previous versions"/>
    <category term="cpe:/a:ibm:tivoli_storage_manager_for_space_management:6.3.0"/>
    <sec:identifier>CVE-2012-4859</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4565:linux_kernel: The tcp_illinois_info function in net/ipv4/tcp_illi...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4565_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4565_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4565_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The tcp_illinois_info function in net/ipv4/tcp_illinois.c in the Linux kernel before 3.4.19, when the net.ipv4.tcp_congestion_control illinois setting is enabled, allows local users to cause a denial of service (divide-by-zero error and OOPS) by reading TCP stats.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4565_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.18 and previous versions"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.9"/>
    <sec:identifier>CVE-2012-4565</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4508:linux_kernel: Race condition in fs/ext4/extents.c in the Linux ke...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4508_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4508_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4508_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from a deleted file by reading an extent that was not properly marked as uninitialized.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4508_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.0.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.31"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.32"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.33"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.34"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.35"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.36"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.37"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.38"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.39"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.40"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.41"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.42"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.43"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.44"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.15 and previous versions"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7:%7E%7E%7E%7Ex86%7E"/>
    <sec:identifier>CVE-2012-4508</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4444:linux_kernel: The ip6_frag_queue function in net/ipv6/reassembly....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4444_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4444_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4444_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4444_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:2.6.30"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc4:x86_32"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.30:rc8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31-rc9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.11"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.12"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.13"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.14"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.31:rc9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.11"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.12"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.13"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.14"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.15"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.16"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.17"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.18"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.19"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.20"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.21"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.22"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.23"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.24"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.25"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.26"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.27"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.28"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.29"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.30"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.31"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.32"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.33"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.34"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.35"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.36"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.37"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.38"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.39"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.40"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.41"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.42"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.43"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.44"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.45"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.46"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.47"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.48"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.49"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.50"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.51"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.52"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.53"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.54"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.55"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.56"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.57"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.58"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.32:rc8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.11"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.12"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.13"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.14"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.15"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.16"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.17"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.18"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.19"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.20"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.33:rc8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.34:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.10"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.11"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.12"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.13"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.8"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35.9"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.35:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:2.6.36:rc8 and previous versions"/>
    <sec:identifier>CVE-2012-4444</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3002:h.264_hi3510/11/12_ip_camera: The web interface on (1) Foscam and (2) Wansview IP...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3002_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3002_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3002_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The web interface on (1) Foscam and (2) Wansview IP cameras allows remote attackers to bypass authentication, and perform administrative functions or read the admin password, via a direct request to an unspecified URL.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3002_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:foscam:h.264_hi3510%2F11%2F12_ip_camera:-"/>
    <category term="cpe:/h:wansview:h.264_hi3510%2F11%2F12_ip_camera:-"/>
    <sec:identifier>CVE-2012-3002</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0957:linux_kernel: The override_release function in kernel/sys.c in th...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0957_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0957_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0957_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The override_release function in kernel/sys.c in the Linux kernel before 3.4.16 allows local users to obtain sensitive information from kernel stack memory via a uname system call in conjunction with a UNAME26 personality.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0957_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.0.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.31"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.32"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.33"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.34"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.35"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.36"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.37"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.38"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.39"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.40"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.41"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.42"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.43"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.44"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.15 and previous versions"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4::%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7:%7E%7E%7E%7Ex86%7E"/>
    <sec:identifier>CVE-2012-0957</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3482:fetchmail: Fetchmail 5.0.8 through 6.3.21, when using NTLM aut...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3482_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3482_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3482_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a denial of service (crash and delayed delivery of inbound mail) via a crafted NTLM response that triggers an out-of-bounds read in the base64 decoder, or (2) obtain sensitive information from memory via an NTLM Type 2 message with a crafted Target Name structure, which triggers an out-of-bounds read.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3482_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:fetchmail:fetchmail:5.0.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.1.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.1.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.7"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.2.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.3.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.3.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.3.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.3.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.4.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.4.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.4.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.4.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.5.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.5.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.5.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.5.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.5.6"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.6.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.7.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.7.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.7.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.11"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.13"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.14"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.17"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.8.6"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.10"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.11"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.13"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:5.9.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.0.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.1.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.1.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.5.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.5.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.5.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.6:pre4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.6:pre8"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.6:pre9"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc10"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc3"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc5"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc7"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc8"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.2.9:rc9"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.0"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.1"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.10"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.11"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.12"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.13"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.14"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.15"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.16"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.17"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.18"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.19"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.2"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.21"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.3"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.5"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6:rc1"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6:rc2"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6:rc3"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6:rc4"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.6:rc5"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.7"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.8"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.9"/>
    <category term="cpe:/a:fetchmail:fetchmail:6.3.9:rc2"/>
    <sec:identifier>CVE-2012-3482</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3133:essbase_server, hyperion_interactive_reporting, hyperion_production_reporting_ser...: Buffer overflow in the DataDirect ODBC driver, as u...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3133_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3133_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3133_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the DataDirect ODBC driver, as used in Oracle Hyperion Interactive Reporting 11.1.2.1 and 11.1.2.2, Essbase Server 11.1.2.1 and 11.1.2.2, Production Reporting Server 11.1.2.1 and 11.1.2.2, and Integration Services Server 11.1.2.1 and 11.1.2.2 has unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3133_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:essbase_server:11.1.2.1"/>
    <category term="cpe:/a:oracle:essbase_server:11.1.2.2"/>
    <category term="cpe:/a:oracle:hyperion_interactive_reporting:11.1.2.1"/>
    <category term="cpe:/a:oracle:hyperion_interactive_reporting:11.1.2.2"/>
    <category term="cpe:/a:oracle:hyperion_production_reporting_server:11.1.2.1"/>
    <category term="cpe:/a:oracle:hyperion_production_reporting_server:11.1.2.2"/>
    <category term="cpe:/a:oracle:integration_services_server:11.1.2.1"/>
    <category term="cpe:/a:oracle:integration_services_server:11.1.2.2"/>
    <sec:identifier>CVE-2012-3133</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1714:hyperion_financial_management: Unspecified vulnerability in a TList 6 ActiveX cont...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1714_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1714_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1714_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in a TList 6 ActiveX control in Oracle Hyperion Financial Management 11.1.1.4 and 11.1.2.1.104 allows remote attackers to execute arbitrary code via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1714_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:hyperion_financial_management:11.1.1.4"/>
    <category term="cpe:/a:oracle:hyperion_financial_management:11.1.2.1.104"/>
    <sec:identifier>CVE-2012-1714</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1712:glassfish_web_space_server10.0: Directory traversal vulnerability in the Liferay co...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1712_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1712_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1712_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the Liferay component in Oracle Sun GlassFish Web Space Server before 10.0 Update 7 Patch 2 has unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1712_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:glassfish_web_space_server10.0:update_7"/>
    <sec:identifier>CVE-2012-1712</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1699:x.org_x11, xfree86: The ProcSetEventMask function in difs/events.c in t...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1699_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1699_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1699_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The ProcSetEventMask function in difs/events.c in the xfs font server for X.Org X11R6 through X11R6.6 and XFree86 before 3.3.3 calls the SendErrToClient function with a mask value instead of a pointer, which allows local users to cause a denial of service (memory corruption and crash) or obtain potentially sensitive information from memory via a SetEventMask request that triggers an invalid pointer dereference.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1699_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:x:x.org_x11:6.0"/>
    <category term="cpe:/a:x:x.org_x11:6.1"/>
    <category term="cpe:/a:x:x.org_x11:6.3"/>
    <category term="cpe:/a:x:x.org_x11:6.4"/>
    <category term="cpe:/a:x:x.org_x11:6.5.1"/>
    <category term="cpe:/a:x:x.org_x11:6.6"/>
    <category term="cpe:/a:xfree86:xfree86:3.3.2 and previous versions"/>
    <sec:identifier>CVE-2012-1699</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0882:mysql: Buffer overflow in yaSSL, as used in MySQL 5.5.20 a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0882_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0882_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0882_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in yaSSL, as used in MySQL 5.5.20 and possibly other versions including 5.5.x before 5.5.22 and 5.1.x before 5.1.62, allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by VulnDisco Pack Professional 9.17.  NOTE: as of 20120224, this disclosure has no actionable information. However, because the module author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.  NOTE: due to lack of details, it is ...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0882_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <sec:identifier>CVE-2012-0882</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0841:libxml2: libxml2 before 2.8.0 computes hash values without r...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0841_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0841_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0841_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
libxml2 before 2.8.0 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0841_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.0.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.1.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.1.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.0:beta"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.15"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.17"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.18"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.19"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.20"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.21"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.22"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.23"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.24"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.25"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.26"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.27"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.28"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.29"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.30"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.17"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.18"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.20"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.21"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.22"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.23"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.24"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.25"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.26"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.27"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.28"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.29"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.30"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.31"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.32"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.8 and previous versions"/>
    <sec:identifier>CVE-2012-0841</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2728:perl: The bsd_glob function in the File::Glob module for ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2728_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2728_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2728_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The bsd_glob function in the File::Glob module for Perl before 5.14.2 allows context-dependent attackers to cause a denial of service (crash) via a glob expression with the GLOB_ALTDIRFUNC flag, which triggers an uninitialized pointer dereference.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2728_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:perl:perl:1.00"/>
    <category term="cpe:/a:perl:perl:1.01"/>
    <category term="cpe:/a:perl:perl:1.20"/>
    <category term="cpe:/a:perl:perl:1.21"/>
    <category term="cpe:/a:perl:perl:1.22"/>
    <category term="cpe:/a:perl:perl:1.31"/>
    <category term="cpe:/a:perl:perl:1.32"/>
    <category term="cpe:/a:perl:perl:1.40"/>
    <category term="cpe:/a:perl:perl:1.41"/>
    <category term="cpe:/a:perl:perl:1.42"/>
    <category term="cpe:/a:perl:perl:1.43"/>
    <category term="cpe:/a:perl:perl:1.44"/>
    <category term="cpe:/a:perl:perl:1.45"/>
    <category term="cpe:/a:perl:perl:1.46"/>
    <category term="cpe:/a:perl:perl:1.47"/>
    <category term="cpe:/a:perl:perl:1.48"/>
    <category term="cpe:/a:perl:perl:1.49"/>
    <category term="cpe:/a:perl:perl:2.0.0"/>
    <category term="cpe:/a:perl:perl:2.1.0"/>
    <category term="cpe:/a:perl:perl:2.1.1"/>
    <category term="cpe:/a:perl:perl:2.1.2"/>
    <category term="cpe:/a:perl:perl:2.1.3"/>
    <category term="cpe:/a:perl:perl:2.10.0"/>
    <category term="cpe:/a:perl:perl:2.10.1"/>
    <category term="cpe:/a:perl:perl:2.10.2"/>
    <category term="cpe:/a:perl:perl:2.10.3"/>
    <category term="cpe:/a:perl:perl:2.10.4"/>
    <category term="cpe:/a:perl:perl:2.10.5"/>
    <category term="cpe:/a:perl:perl:2.10.6"/>
    <category term="cpe:/a:perl:perl:2.10.7"/>
    <category term="cpe:/a:perl:perl:2.11.0"/>
    <category term="cpe:/a:perl:perl:2.11.1"/>
    <category term="cpe:/a:perl:perl:2.11.2"/>
    <category term="cpe:/a:perl:perl:2.11.3"/>
    <category term="cpe:/a:perl:perl:2.11.4"/>
    <category term="cpe:/a:perl:perl:2.11.5"/>
    <category term="cpe:/a:perl:perl:2.11.6"/>
    <category term="cpe:/a:perl:perl:2.11.7"/>
    <category term="cpe:/a:perl:perl:2.11.8"/>
    <category term="cpe:/a:perl:perl:2.12.0"/>
    <category term="cpe:/a:perl:perl:2.13.0"/>
    <category term="cpe:/a:perl:perl:2.14.0"/>
    <category term="cpe:/a:perl:perl:2.14.1"/>
    <category term="cpe:/a:perl:perl:2.15.0"/>
    <category term="cpe:/a:perl:perl:2.15.1"/>
    <category term="cpe:/a:perl:perl:2.16.0"/>
    <category term="cpe:/a:perl:perl:2.16.1"/>
    <category term="cpe:/a:perl:perl:2.17.0"/>
    <category term="cpe:/a:perl:perl:2.17.1"/>
    <category term="cpe:/a:perl:perl:2.17.2"/>
    <category term="cpe:/a:perl:perl:2.18.0"/>
    <category term="cpe:/a:perl:perl:2.18.1"/>
    <category term="cpe:/a:perl:perl:2.2.0"/>
    <category term="cpe:/a:perl:perl:2.2.1"/>
    <category term="cpe:/a:perl:perl:2.2.2"/>
    <category term="cpe:/a:perl:perl:2.3.0"/>
    <category term="cpe:/a:perl:perl:2.4.0"/>
    <category term="cpe:/a:perl:perl:2.5.0"/>
    <category term="cpe:/a:perl:perl:2.5.1"/>
    <category term="cpe:/a:perl:perl:2.6.0"/>
    <category term="cpe:/a:perl:perl:2.6.1"/>
    <category term="cpe:/a:perl:perl:2.6.2"/>
    <category term="cpe:/a:perl:perl:2.6.3"/>
    <category term="cpe:/a:perl:perl:2.6.4"/>
    <category term="cpe:/a:perl:perl:2.6.5"/>
    <category term="cpe:/a:perl:perl:2.6.6"/>
    <category term="cpe:/a:perl:perl:2.7.0"/>
    <category term="cpe:/a:perl:perl:2.7.1"/>
    <category term="cpe:/a:perl:perl:2.7.2"/>
    <category term="cpe:/a:perl:perl:2.8.0"/>
    <category term="cpe:/a:perl:perl:2.8.1"/>
    <category term="cpe:/a:perl:perl:2.8.2"/>
    <category term="cpe:/a:perl:perl:2.8.3"/>
    <category term="cpe:/a:perl:perl:2.8.4"/>
    <category term="cpe:/a:perl:perl:2.8.5"/>
    <category term="cpe:/a:perl:perl:2.8.6"/>
    <category term="cpe:/a:perl:perl:2.8.7"/>
    <category term="cpe:/a:perl:perl:2.8.8"/>
    <category term="cpe:/a:perl:perl:2.9.0"/>
    <category term="cpe:/a:perl:perl:2.9.1"/>
    <category term="cpe:/a:perl:perl:2.9.2"/>
    <category term="cpe:/a:perl:perl:5.10"/>
    <category term="cpe:/a:perl:perl:5.10.0"/>
    <category term="cpe:/a:perl:perl:5.10.0:rc1"/>
    <category term="cpe:/a:perl:perl:5.10.0:rc2"/>
    <category term="cpe:/a:perl:perl:5.10.1"/>
    <category term="cpe:/a:perl:perl:5.10.1:rc1"/>
    <category term="cpe:/a:perl:perl:5.10.1:rc2"/>
    <category term="cpe:/a:perl:perl:5.11.0"/>
    <category term="cpe:/a:perl:perl:5.11.1"/>
    <category term="cpe:/a:perl:perl:5.11.2"/>
    <category term="cpe:/a:perl:perl:5.11.3"/>
    <category term="cpe:/a:perl:perl:5.11.4"/>
    <category term="cpe:/a:perl:perl:5.11.5"/>
    <category term="cpe:/a:perl:perl:5.12.0"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc0"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc3"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc4"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc5"/>
    <category term="cpe:/a:perl:perl:5.12.1"/>
    <category term="cpe:/a:perl:perl:5.12.1:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.1:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.2"/>
    <category term="cpe:/a:perl:perl:5.12.2:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.3"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc3"/>
    <category term="cpe:/a:perl:perl:5.13.0"/>
    <category term="cpe:/a:perl:perl:5.13.1"/>
    <category term="cpe:/a:perl:perl:5.13.10"/>
    <category term="cpe:/a:perl:perl:5.13.11"/>
    <category term="cpe:/a:perl:perl:5.13.2"/>
    <category term="cpe:/a:perl:perl:5.13.3"/>
    <category term="cpe:/a:perl:perl:5.13.4"/>
    <category term="cpe:/a:perl:perl:5.13.5"/>
    <category term="cpe:/a:perl:perl:5.13.6"/>
    <category term="cpe:/a:perl:perl:5.13.7"/>
    <category term="cpe:/a:perl:perl:5.13.8"/>
    <category term="cpe:/a:perl:perl:5.13.9"/>
    <category term="cpe:/a:perl:perl:5.14.0"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc1"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc2"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc3"/>
    <category term="cpe:/a:perl:perl:5.14.1 and previous versions"/>
    <category term="cpe:/a:perl:perl:5.6.0"/>
    <category term="cpe:/a:perl:perl:5.6.1"/>
    <category term="cpe:/a:perl:perl:5.8.0"/>
    <category term="cpe:/a:perl:perl:5.8.1"/>
    <category term="cpe:/a:perl:perl:5.8.10"/>
    <category term="cpe:/a:perl:perl:5.8.2"/>
    <category term="cpe:/a:perl:perl:5.8.3"/>
    <category term="cpe:/a:perl:perl:5.8.4"/>
    <category term="cpe:/a:perl:perl:5.8.5"/>
    <category term="cpe:/a:perl:perl:5.8.6"/>
    <category term="cpe:/a:perl:perl:5.8.7"/>
    <category term="cpe:/a:perl:perl:5.8.8"/>
    <category term="cpe:/a:perl:perl:5.8.9"/>
    <category term="cpe:/a:perl:perl:5.9.2"/>
    <sec:identifier>CVE-2011-2728</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-2387:gnome_display_manager: vicious-extensions/ve-misc.c in GNOME Display Manag...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-2387_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-2387_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-2387_AD_1.html</id>
    <published>2012-12-21T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
vicious-extensions/ve-misc.c in GNOME Display Manager (gdm) 2.20.x before 2.20.11, when GDM debug is enabled, logs the user password when it contains invalid UTF8 encoded characters, which might allow local users to gain privileges by reading the information from syslog logs.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-2387_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.0"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.1"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.10"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.2"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.3"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.4"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.5"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.6"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.7"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.8"/>
    <category term="cpe:/a:gnome:gnome_display_manager:2.20.9"/>
    <sec:identifier>CVE-2010-2387</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2012-6422:galaxy_note_2, galaxy_s2, mx: The kernel in Samsung Galaxy S2, Galaxy Note 2, MEI...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_2.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write arbitrary physical memory and gain privileges via a crafted application, as demonstrated by ExynosAbuse.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:meizu:mx:-"/>
    <category term="cpe:/h:samsung:galaxy_note_2:-"/>
    <category term="cpe:/h:samsung:galaxy_s2:-"/>
    <sec:identifier>CVE-2012-6422</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005647:Seagull &#12398; index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005647_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005647_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005647_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Seagull の index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005647_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:seagullproject.org:seagull"/>
    <sec:identifier>JVNDB-2010-005647</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005646:Seagull &#12395;&#12362;&#12369;&#12427; PHP &#12522;&#12514;&#12540;&#12488;&#12501;&#12449;&#12452;&#12523;&#12452;&#12531;&#12463;&#12523;&#12540;&#12472;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005646_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005646_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005646_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Seagull には、PHP リモートファイルインクルージョンの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005646_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:seagullproject.org:seagull"/>
    <sec:identifier>JVNDB-2010-005646</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005645:WWB &#12398; ajax.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005645_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005645_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005645_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wiccle Web Builder (WWB) の ajax.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005645_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wiccle:wiccle_web_builder"/>
    <sec:identifier>JVNDB-2010-005645</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005644:Textpattern CMS &#12398; index.php &#12395;&#12362;&#12369;&#12427; PHP &#12522;&#12514;&#12540;&#12488;&#12501;&#12449;&#12452;&#12523;&#12452;&#12531;&#12463;&#12523;&#12540;&#12472;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005644_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005644_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005644_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Textpattern CMS の index.php には、PHP リモートファイルインクルージョンの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005644_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:textpattern:textpattern"/>
    <sec:identifier>JVNDB-2010-005644</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005643:Joomla! &#29992;&#12398; PicSell &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005643_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005643_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005643_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の PicSell (com_picsell) コンポーネントには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005643_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:xmlswf:com_picsell"/>
    <sec:identifier>JVNDB-2010-005643</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005642:Trend Micro Internet Security Pro 2010 &#12398; UfProxyBrowserCtrl ActiveX &#12467;&#12531;&#12488;&#12525;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005642_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005642_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005642_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Trend Micro Internet Security Pro 2010 の UfProxyBrowserCtrl ActiveX コントロールの extSetOwner 関数には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005642_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trendmicro:internet_security"/>
    <sec:identifier>JVNDB-2010-005642</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005641:Skype &#12395;&#12362;&#12369;&#12427; DLL &#12495;&#12452;&#12472;&#12515;&#12483;&#12463;&#25915;&#25731;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005641_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005641_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005641_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Skype は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005641_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:skype_technologies:skype"/>
    <sec:identifier>JVNDB-2010-005641</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005640:Wireshark &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005640_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005640_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005640_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005640_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2010-005640</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005639:TechSmith Snagit &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005639_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005639_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005639_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TechSmith Snagit は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005639_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:techsmith:snagit"/>
    <sec:identifier>JVNDB-2010-005639</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005638:uTorrent &#12395;&#12362;&#12369;&#12427; DLL &#12495;&#12452;&#12472;&#12515;&#12483;&#12463;&#25915;&#25731;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005638_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005638_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005638_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
uTorrent は、検索パスに関する処理に不備があるため、任意のファイルを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005638_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:utorrent:utorrent"/>
    <sec:identifier>JVNDB-2010-005638</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005637:TeamViewer &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005637_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005637_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005637_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TeamViewer は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005637_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:teamviewer:teamviewer"/>
    <sec:identifier>JVNDB-2010-005637</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005636:TeamMate Audit Management Software Suite &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005636_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005636_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005636_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TeamMate Audit Management Software Suite は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005636_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wolterskluwer:teammate_audit_management_software_suite"/>
    <sec:identifier>JVNDB-2010-005636</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005635:VLC Media Player &#12398; bin/winvlc.c &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005635_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005635_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005635_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VLC Media Player の bin/winvlc.c は、検索パスに関する処理に不備があるため、任意のコードを実行される、および DLL ハイジャック攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005635_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player"/>
    <sec:identifier>JVNDB-2010-005635</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005634:Porta+ FTP Client &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005634_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005634_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005634_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Porta+ FTP Client には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005634_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:portaplus:porta%2B_ftp_client"/>
    <sec:identifier>JVNDB-2010-005634</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005633:SmartSoft &#12398; SmartFTP Client &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005633_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005633_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005633_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SmartSoft の SmartFTP Client には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005633_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:smartftp:smartftp"/>
    <sec:identifier>JVNDB-2010-005633</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005632:WinFrigate Frigate 3 FTP &#12463;&#12521;&#12452;&#12450;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005632_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005632_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005632_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WinFrigate Frigate 3 FTP クライアントには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005632_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:winfrigate:frigate_3"/>
    <sec:identifier>JVNDB-2010-005632</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005631:SoftX FTP Client &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005631_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005631_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005631_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SoftX FTP Client には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005631_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:softx:ftp_client"/>
    <sec:identifier>JVNDB-2010-005631</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005630:phpMyAdmin &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005630_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005630_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005630_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpMyAdmin は、以下のファイルに関する処理に不備があるため、クロスサイトスクリプティングの脆弱性が存在します。 (1) db_search.php (2) db_sql.php (3) db_structure.php (4) js/messages.php (5) libraries/common.lib.php (6) libraries/database_interface.lib.php (7) libraries/dbi/mysql.dbi.lib.php (8) libraries/dbi/mysqli.dbi.lib.php (9) libraries/db_info.inc.php (10) libraries/sanitizing.lib.php (11) libraries/sqlparser.lib.php (12) server_databases.php (13) server_privileges.php (14) setup/config.php (15) sql.php (16) tbl_replace.php (17) tbl_sql.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005630_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin"/>
    <sec:identifier>JVNDB-2010-005630</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005629:phpMyAdmin &#12398;&#12467;&#12531;&#12501;&#12451;&#12462;&#12517;&#12524;&#12540;&#12471;&#12519;&#12531;&#35373;&#23450;&#12473;&#12463;&#12522;&#12503;&#12488;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005629_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005629_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005629_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpMyAdmin のコンフィギュレーション設定スクリプトは、出力ファイルの鍵の名前を適切に制限しないため、任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005629_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin"/>
    <sec:identifier>JVNDB-2010-005629</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005628:SAP Crystal Reports &#12398; ebus-3-3-2-6.dll &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005628_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005628_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005628_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SAP Crystal Reports の ebus-3-3-2-6.dll モジュールの OBGIOPServerWorker::extractHeader 関数には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005628_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sap:crystal_reports"/>
    <sec:identifier>JVNDB-2010-005628</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005627:Wyse ThinOS HF &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005627_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005627_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005627_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wyse ThinOS HF には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005627_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:wyse:thinos_hf"/>
    <sec:identifier>JVNDB-2010-005627</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005626:Tomaz Muraus Open Blog &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005626_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005626_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005626_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tomaz Muraus Open Blog には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005626_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomaz-muraus:open_blog"/>
    <sec:identifier>JVNDB-2010-005626</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005625:PHPKick &#12398; statistics.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005625_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005625_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005625_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PHPKick の statistics.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005625_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpkick:phpkick"/>
    <sec:identifier>JVNDB-2010-005625</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005624:Joomla! &#29992;&#12398; Aardvertiser &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#29305;&#23450;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005624_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005624_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005624_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の Aardvertiser コンポーネントは、安全でないパーミッション (777) を使用するため、特定のファイルを変更される、作成される、または削除される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005624_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simon_philips:aardvertiser"/>
    <sec:identifier>JVNDB-2010-005624</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005623:Tycoon Baseball Script &#12398; index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005623_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005623_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005623_AD_1.html</id>
    <published>2012-12-20T19:29:10+09:00</published>
    <updated>2012-12-20T19:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tycoon Baseball Script の index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005623_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tycoon:baseball_script"/>
    <sec:identifier>JVNDB-2010-005623</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005622:Tomaz Muraus Open Blog &#12398; application/modules/admin/controllers/users.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005622_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005622_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005622_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tomaz Muraus Open Blog の application/modules/admin/controllers/users.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005622_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomaz-muraus:open_blog"/>
    <sec:identifier>JVNDB-2010-005622</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005621:Tomaz Muraus Open Blog &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005621_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005621_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005621_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tomaz Muraus Open Blog には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005621_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomaz-muraus:open_blog"/>
    <sec:identifier>JVNDB-2010-005621</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005620:Pligg &#12398; groupadmin.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005620_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005620_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005620_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pligg の groupadmin.php には、SQL インジェクションの脆弱性が存在します。 本脆弱性は、CVE-2010-2577 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005620_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:pligg:pligg_cms"/>
    <sec:identifier>JVNDB-2010-005620</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005619:Wireshark &#12398; ASN.1 BER &#35299;&#26512;&#23376;&#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005619_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005619_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005619_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の ASN.1 BER 解析子には、スタックベースのバッファオーバーフローの脆弱性が存在します。 本脆弱性は、CVE-2010-2284 のリグレッションに起因した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005619_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2010-005619</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005618:Wireshark &#12398; IPMI &#35299;&#26512;&#23376;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005618_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005618_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005618_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の IPMI 解析子には、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005618_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2010-005618</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005617:Wireshark &#12398; GSM A RR &#35299;&#26512;&#23376;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005617_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005617_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005617_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の GSM A RR 解析子の packet-gsm_a_rr.c には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005617_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2010-005617</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005616:libmikmod &#12398; loaders/load_it.c &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12522;&#12540;&#12489;&#12434;&#35480;&#30330;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005616_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005616_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005616_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libmikmod の loaders/load_it.c は、name##tick および name##node を考慮して、より大きいサイズの name##env を適切に計算しないため、バッファオーバーリードを誘発されるなど、不特定の影響を受ける脆弱性が存在します。 本問題は、CVE-2010-2546 に関連する可能性があります。 本脆弱性は、CVE-2009-3995 での修正が不完全だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005616_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:raphael_assenat:libmikmod"/>
    <sec:identifier>JVNDB-2010-005616</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005615:Wind River VxWorks &#12398; FTP &#12487;&#12540;&#12514;&#12531;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005615_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005615_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005615_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wind River VxWorks の FTP デーモンは、ログイン操作を何度も失敗した後に TCP 接続をクローズしないため、アクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005615_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:windriver:vxworks"/>
    <sec:identifier>JVNDB-2010-005615</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005614:Wind River VxWorks &#12398; loginLib &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005614_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005614_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005614_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wind River VxWorks の loginLib の loginDefaultEncrypt アルゴリズムは、大量のパスワードのセットを適切にサポートしないため、アクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005614_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:windriver:vxworks"/>
    <sec:identifier>JVNDB-2010-005614</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005613:Wind River VxWorks &#12398; INCLUDE_SECURITY &#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#27177;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005613_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005613_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005613_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wind River VxWorks の INCLUDE_SECURITY 機能は、LOGIN_USER_NAME および LOGIN_USER_PASSWORD パラメータを使用して、ハードコードされた資格情報を作成するため、アクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005613_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:windriver:vxworks"/>
    <sec:identifier>JVNDB-2010-005613</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005612:Rockwell Automation 1756-ENBT series A &#12391;&#20351;&#29992;&#12373;&#12428;&#12390;&#12356;&#12427; Wind River VxWorks &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12513;&#12514;&#12522;&#38936;&#22495;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005612_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005612_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005612_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Rockwell Automation 1756-ENBT series A で使用されている Wind River VxWorks の WDB ターゲットエージェントデバックサービスには、任意のメモリ領域を読まれるまたは変更される、関数呼び出しを実行される、またはタスクを管理される脆弱性が存在します。 本問題は、CVE-2005-3804 に関連する可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005612_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:rockwellautomation:1756-enbt_series_a"/>
    <category term="cpe:/o:rockwellautomation:1756-enbt_series_a_firmware"/>
    <category term="cpe:/o:windriver:vxworks"/>
    <sec:identifier>JVNDB-2010-005612</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005611:SLiM &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005611_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005611_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005611_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SLiM のデフォルトコンフィグレーションは、default_path オプションの先頭に ./ (ドットスラッシュ) を配置する、slim.conf および cfg.cpp に関する処理に不備があるため、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005611_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simone_rota:slim_simple_login_manager"/>
    <sec:identifier>JVNDB-2010-005611</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005610:VideoLAN VLC Media Player &#12398; TagLib &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005610_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005610_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005610_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VideoLAN VLC Media Player の TagLib プラグインの taglib.cpp の ReadMetaFromId3v2 関数は、ID3v2 タグを適切に処理しないため、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005610_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player"/>
    <sec:identifier>JVNDB-2010-005610</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005609:ZNC &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005609_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005609_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005609_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ZNC は、&quot;安全でない substr () 呼び出し&quot; の不備があるため、サービス運用妨害 (例外およびデーモンクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005609_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:znc:znc"/>
    <sec:identifier>JVNDB-2010-005609</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005608:SigPlus Pro ActiveX &#12467;&#12531;&#12488;&#12525;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005608_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005608_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005608_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SigPlus Pro ActiveX コントロールには、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005608_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:topazsystems:sigplus_pro_activex_control"/>
    <sec:identifier>JVNDB-2010-005608</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005607:sNews &#12398; index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005607_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005607_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005607_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
sNews の index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005607_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:solucija:snews"/>
    <sec:identifier>JVNDB-2010-005607</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005606:WordPress &#29992;&#12398; myLinksDump &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005606_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005606_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005606_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用の myLinksDump プラグインの myLDlinker.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005606_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:silvercover:mylinksdump_plugin"/>
    <sec:identifier>JVNDB-2010-005606</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005605:Joomla! &#29992;&#12398; YouTube &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005605_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005605_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005605_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の YouTube (com_youtube) コンポーネントには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005605_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prasanna:com_youtube"/>
    <sec:identifier>JVNDB-2010-005605</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005604:Joomla! &#29992;&#12398; Visites &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427; PHP &#12522;&#12514;&#12540;&#12488;&#12501;&#12449;&#12452;&#12523;&#12452;&#12531;&#12463;&#12523;&#12540;&#12472;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005604_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005604_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005604_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の Visites (com_joomla-visites) コンポーネントの core/include/myMailer.class.php には、PHP リモートファイルインクルージョンの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005604_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:visocrea:com_joomla_visites"/>
    <sec:identifier>JVNDB-2010-005604</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005603:Joomla! &#29992;&#12398; TTVideo &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005603_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005603_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005603_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の TTVideo (com_ttvideo) コンポーネントの ttvideo.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005603_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:toughtomato:com_ttvideo"/>
    <sec:identifier>JVNDB-2010-005603</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005602:SAP NetWeaver &#12398; SLD &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005602_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005602_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005602_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SAP NetWeaver の System Landscape Directory (SLD) コンポーネントには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005602_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sap:netweaver"/>
    <category term="cpe:/a:sap:system_landscape_directory"/>
    <sec:identifier>JVNDB-2010-005602</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005601:RunCMS &#12398; modules/headlines/magpierss/scripts/magpie_debug.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005601_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005601_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005601_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RunCMS の modules/headlines/magpierss/scripts/magpie_debug.php には、Headlines モジュールが有効になっている際、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005601_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:runcms:runcms"/>
    <sec:identifier>JVNDB-2010-005601</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005600:Joomla! &#29992;&#12398; QuickFAQ &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005600_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005600_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005600_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用の QuickFAQ (com_quickfaq) コンポーネントには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005600_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:schlu.net:com_quickfaq"/>
    <sec:identifier>JVNDB-2010-005600</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005599:SquirrelMail &#12398; functions/imap_general.php &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005599_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005599_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005599_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SquirrelMail の functions/imap_general.php は、8 ビットキャラクタのパスワードを適切に処理しないため、サービス運用妨害 (ディスク消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005599_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:squirrelmail:squirrelmail"/>
    <sec:identifier>JVNDB-2010-005599</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005598:ZNC &#12398; Client.cpp &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005598_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005598_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005598_AD_1.html</id>
    <published>2012-12-20T19:29:09+09:00</published>
    <updated>2012-12-20T19:29:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ZNC の Client.cpp には、サービス運用妨害 (例外およびデーモンクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005598_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:znc:znc"/>
    <sec:identifier>JVNDB-2010-005598</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005764:Huawei E585 &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005764_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005764_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005764_AD_1.html</id>
    <published>2012-12-20T15:58:17+09:00</published>
    <updated>2012-12-20T15:58:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Huawei E585 デバイスには、サービス運用妨害 (NULL ポインタデリファレンスおよびデバイスの停止) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005764_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585"/>
    <category term="cpe:/h:huawei:e585u-82"/>
    <sec:identifier>JVNDB-2012-005764</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005763:Huawei E585 &#12487;&#12496;&#12452;&#12473; &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005763_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005763_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005763_AD_1.html</id>
    <published>2012-12-20T15:55:12+09:00</published>
    <updated>2012-12-20T15:55:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Huawei E585 デバイスには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005763_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585"/>
    <category term="cpe:/h:huawei:e585u-82"/>
    <sec:identifier>JVNDB-2012-005763</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005762:Huawei E585 &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#12518;&#12540;&#12470;&#24773;&#22577;&#12362;&#12424;&#12403;&#12475;&#12483;&#12471;&#12519;&#12531; ID &#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005762_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005762_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005762_AD_1.html</id>
    <published>2012-12-20T15:53:18+09:00</published>
    <updated>2012-12-20T15:53:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Huawei E585 デバイスは、管理セッションのステータスを検証しないため、重要なユーザ情報およびセッション ID を取得され、データを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005762_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585"/>
    <category term="cpe:/h:huawei:e585u-82"/>
    <sec:identifier>JVNDB-2012-005762</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005761:Tropos wireless mesh router &#12398; Mesh OS &#12395;&#12362;&#12369;&#12427;&#12487;&#12496;&#12452;&#12473;&#12395;&#12394;&#12426;&#12377;&#12414;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005761_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005761_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005761_AD_1.html</id>
    <published>2012-12-20T15:50:00+09:00</published>
    <updated>2012-12-20T15:50:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tropos wireless mesh router 上で稼働する Mesh OS は、SSH 鍵の生成に十分なエントロピーソースを利用しないため、デバイスになりすまされる、またはクライアント・サーバ間のデータストリームが改ざんされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005761_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:tropos:1310_distrubution_automation_mesh_router"/>
    <category term="cpe:/h:tropos:1410_mesh_router"/>
    <category term="cpe:/h:tropos:1410_wireless_mesh_router"/>
    <category term="cpe:/h:tropos:3310_indoor_mesh_router"/>
    <category term="cpe:/h:tropos:3320_indoor_mesh_router"/>
    <category term="cpe:/h:tropos:4310_mobile_mesh_router"/>
    <category term="cpe:/h:tropos:6310_mesh_router"/>
    <category term="cpe:/h:tropos:6320_mesh_router"/>
    <category term="cpe:/o:tropos:mesh_os"/>
    <sec:identifier>JVNDB-2012-005761</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005760:Invensys Wonderware InTouch &#12362;&#12424;&#12403; Siemens ProcessSuite &#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#30330;&#35211;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005760_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005760_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005760_AD_1.html</id>
    <published>2012-12-20T15:39:01+09:00</published>
    <updated>2012-12-20T15:39:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Invensys Wonderware InTouch および Siemens ProcessSuite は、Ps_security.ini のデータに対して脆弱な暗号化アルゴリズムを使用するため、パスワードを発見される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005760_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:invensys:intouch"/>
    <category term="cpe:/a:siemens:processsuite"/>
    <sec:identifier>JVNDB-2012-005760</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005759:Siemens Automation License Manager &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12513;&#12514;&#12522;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005759_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005759_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005759_AD_1.html</id>
    <published>2012-12-20T15:32:14+09:00</published>
    <updated>2012-12-20T15:32:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Siemens Automation License Manager (ALM) には、メモリリークにより、サービス運用妨害 (メモリ消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005759_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:siemens:automation_license_manager"/>
    <sec:identifier>JVNDB-2012-005759</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005758:VMware View &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005758_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005758_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005758_AD_1.html</id>
    <published>2012-12-20T15:27:41+09:00</published>
    <updated>2012-12-20T15:27:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware View の (1) View Connection Server および (2) View Security Server には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005758_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:view"/>
    <sec:identifier>JVNDB-2012-005758</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005757:IBM Lotus Foundations Start &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005757_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005757_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005757_AD_1.html</id>
    <published>2012-12-20T15:23:25+09:00</published>
    <updated>2012-12-20T15:23:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Lotus Foundations Start には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005757_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:lotus_foundations_start"/>
    <sec:identifier>JVNDB-2012-005757</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005756:IBM Lotus Notes &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005756_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005756_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005756_AD_1.html</id>
    <published>2012-12-20T15:21:53+09:00</published>
    <updated>2012-12-20T15:21:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Lotus Notes は、Web アプリケーションの Cookie の Set-Cookie ヘッダ内に HTTPOnly フラグを含まないため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005756_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:lotus_notes"/>
    <sec:identifier>JVNDB-2012-005756</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005755:Linux &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; IBM ASU &#12362;&#12424;&#12403; BoMC &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12365;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005755_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005755_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005755_AD_1.html</id>
    <published>2012-12-20T15:11:46+09:00</published>
    <updated>2012-12-20T15:11:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux 上で稼働する IBM Advanced Settings Utility (ASU) および  Bootable Media Creator (BoMC) には、任意のファイルを上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005755_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:advanced_settings_utility"/>
    <category term="cpe:/a:ibm:bootable_media_creator"/>
    <sec:identifier>JVNDB-2012-005755</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005754:Cisco Wireless LAN Controller &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005754_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005754_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005754_AD_1.html</id>
    <published>2012-12-20T14:57:33+09:00</published>
    <updated>2012-12-20T14:57:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Wireless LAN Controller (WLC) デバイスの screens/base/web_auth_custom.html には、クロスサイトスクリプティングの脆弱性が存在します。  本問題は、Bug ID CSCud65187 の問題です。  本脆弱性は、CVE-2012-5992 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005754_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software"/>
    <sec:identifier>JVNDB-2012-005754</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005753:Cisco Wireless LAN Controller &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005753_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005753_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005753_AD_1.html</id>
    <published>2012-12-20T14:52:46+09:00</published>
    <updated>2012-12-20T14:52:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Wireless LAN Controller (WLC) デバイスには、クロスサイトリクエストフォージェリの脆弱性が存在します。  本問題は、Bug ID CSCud50283 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005753_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software"/>
    <sec:identifier>JVNDB-2012-005753</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005752:Cisco Wireless LAN Controller &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005752_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005752_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005752_AD_1.html</id>
    <published>2012-12-20T14:46:03+09:00</published>
    <updated>2012-12-20T14:46:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Wireless LAN Controller (WLC) デバイスの screens/base/web_auth_custom.html には、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug ID CSCud50209 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005752_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software"/>
    <sec:identifier>JVNDB-2012-005752</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005751:Apache Tomcat &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005751_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005751_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005751_AD_1.html</id>
    <published>2012-12-20T14:36:47+09:00</published>
    <updated>2012-12-20T14:36:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat の org/apache/tomcat/util/net/NioEndpoint.java には、NIO コネクタが sendfile と HTTPS との組み合わせで使用される場合、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005751_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005751</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005750:Apache Tomcat &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522; (CSRF) &#20445;&#35703;&#12513;&#12459;&#12491;&#12474;&#12512;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005750_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005750_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005750_AD_1.html</id>
    <published>2012-12-20T14:27:11+09:00</published>
    <updated>2012-12-20T14:27:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat の org/apache/catalina/filters/CsrfPreventionFilter.java には、クロスサイトリクエストフォージェリ (CSRF) 保護メカニズムを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005750_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005750</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005749:Apache Tomcat &#12395;&#12362;&#12369;&#12427; security-constraint &#12398;&#12481;&#12455;&#12483;&#12463;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005749_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005749_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005749_AD_1.html</id>
    <published>2012-12-20T14:08:40+09:00</published>
    <updated>2012-12-20T14:08:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat の org/apache/catalina/realm/RealmBase.java には、FORM 認証が使用される際、security-constraint のチェックを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005749_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005749</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000112:Android &#29256; Opera Mini &#12454;&#12455;&#12502;&#12502;&#12521;&#12454;&#12470;&#12362;&#12424;&#12403; Opera Mobile &#12454;&#12455;&#12502;&#12502;&#12521;&#12454;&#12470;&#12395;&#12362;&#12356;&#12390;&#20219;&#24847;&#12398;&#12473;&#12463;&#12522;&#12503;&#12488;&#12364;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000112_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000112_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000112_AD_1.html</id>
    <published>2012-12-20T12:02:08+09:00</published>
    <updated>2012-12-20T12:02:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Opera Mini ウェブブラウザおよび Opera Mobile ウェブブラウザは、スマートフォン向けのウェブブラウザです。Android 版 Opera Mini ウェブブラウザおよび Opera Mobile ウェブブラウザには、任意のスクリプトが実行される脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 三井物産セキュアディレクション株式会社 望月 岳 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000112_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opera:opera_mini_webbrowser"/>
    <category term="cpe:/a:opera:opera_mobile_webbrowser"/>
    <sec:identifier>JVNDB-2012-000112</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000111:Boat Browser &#12362;&#12424;&#12403; Boat Browser Mini &#12395;&#12362;&#12369;&#12427; WebView &#12463;&#12521;&#12473;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000111_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000111_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000111_AD_1.html</id>
    <published>2012-12-20T12:01:28+09:00</published>
    <updated>2012-12-20T12:01:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Boat Browser および Boat Browser Mini は、Android 向けのウェブブラウザです。Boat Browser および Boat Browser Mini には、WebView クラスに関する脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 三井物産セキュアディレクション株式会社 望月 岳 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000111_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:boat_broweser_boat_browser"/>
    <category term="cpe:/a:misc:boat_browser_boat_browser_mini"/>
    <sec:identifier>JVNDB-2012-000111</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005748:RealNetworks RealPlayer &#12362;&#12424;&#12403; RealPlayer SP &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005748_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005748_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005748_AD_1.html</id>
    <published>2012-12-20T11:50:28+09:00</published>
    <updated>2012-12-20T11:50:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RealNetworks RealPlayer および RealPlayer SP には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005748_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:real:realplayer"/>
    <category term="cpe:/a:realnetworks:realplayer_sp"/>
    <sec:identifier>JVNDB-2012-005748</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005747:RealNetworks RealPlayer &#12362;&#12424;&#12403; RealPlayer SP &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005747_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005747_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005747_AD_1.html</id>
    <published>2012-12-20T11:45:58+09:00</published>
    <updated>2012-12-20T11:45:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RealNetworks RealPlayer および RealPlayer SP には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005747_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:real:realplayer"/>
    <category term="cpe:/a:realnetworks:realplayer_sp"/>
    <sec:identifier>JVNDB-2012-005747</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005746:Symantec Enterprise Security Manager &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005746_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005746_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005746_AD_1.html</id>
    <published>2012-12-20T11:38:34+09:00</published>
    <updated>2012-12-20T11:38:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec Enterprise Security Manager (ESM) の (1) Manager および (2) Agent コンポーネントには、引用されない Windows 検索パスにより、権限を取得される脆弱性が存在します。  補足情報 : CWE による脆弱性タイプは、CWE-426: Untrusted Search Path (信頼性のない検索パス) と識別されています。 http://cwe.mitre.org/data/definitions/426.html&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005746_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:enterprise_security_manager"/>
    <sec:identifier>JVNDB-2012-005746</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005745:Symantec Endpoint Protection &#12398;&#31649;&#29702;&#12467;&#12531;&#12477;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005745_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005745_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005745_AD_1.html</id>
    <published>2012-12-20T11:19:12+09:00</published>
    <updated>2012-12-20T11:19:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec Endpoint Protection (SEP) の管理コンソールは、PHP スクリプトの入力を適切に検証しないため、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005745_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:endpoint_protection"/>
    <sec:identifier>JVNDB-2012-005745</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6271:shockwave_player: Adobe Shockwave Player through 11.6.8.638 allows re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6271_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6271_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6271_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of arbitrary signed Xtras via a Shockwave movie that contains an Xtra URL, as demonstrated by a URL for an outdated Xtra.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6271_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.8.638 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-6271</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6270:shockwave_player: Adobe Shockwave Player through 11.6.8.638 allows re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6270_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6270_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6270_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe Shockwave Player through 11.6.8.638 allows remote attackers to trigger installation of a Shockwave Player 10.4.0.025 compatibility feature via a crafted HTML document that references Shockwave content with a certain compatibility parameter, related to a &quot;downgrading&quot; attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6270_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.8.638 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-6270</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5955:http_server, websphere_application_server: Unspecified vulnerability in the IBM HTTP Server co...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5955_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5955_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5955_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the IBM HTTP Server component 5.3 in IBM WebSphere Application Server (WAS) for z/OS allows remote attackers to execute arbitrary commands via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5955_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:http_server:5.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:-:-:%7E%7E%7Ez%2Fos%7E%7E"/>
    <sec:identifier>CVE-2012-5955</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5765:rational_clearquest: The Web Client (aka CQ Web) in IBM Rational ClearQu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5765_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5765_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5765_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a SQL error message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5765_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.1"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.3"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.4"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.5"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.6"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.7"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.8"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.1"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.3"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.4"/>
    <sec:identifier>CVE-2012-5765</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5643:squid: Multiple memory leaks in tools/cachemgr.cc in cache...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5643_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5643_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5643_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple memory leaks in tools/cachemgr.cc in cachemgr.cgi in Squid 2.x and 3.x before 3.1.22, 3.2.x before 3.2.4, and 3.3.x before 3.3.0.2 allow remote attackers to cause a denial of service (memory consumption) via (1) invalid Content-Length headers, (2) long POST requests, or (3) crafted authentication credentials.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5643_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:squid-cache:squid:2.0"/>
    <category term="cpe:/a:squid-cache:squid:2.1"/>
    <category term="cpe:/a:squid-cache:squid:2.2"/>
    <category term="cpe:/a:squid-cache:squid:2.3"/>
    <category term="cpe:/a:squid-cache:squid:2.4"/>
    <category term="cpe:/a:squid-cache:squid:2.5"/>
    <category term="cpe:/a:squid-cache:squid:2.6"/>
    <category term="cpe:/a:squid-cache:squid:2.7"/>
    <category term="cpe:/a:squid-cache:squid:2.7:stable3"/>
    <category term="cpe:/a:squid-cache:squid:2.7:stable4"/>
    <category term="cpe:/a:squid-cache:squid:3.0"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable1"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable10"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable11"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable11:rc1"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable12"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable13"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable14"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable15"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable16"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable16:rc1"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable17"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable18"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable19"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable2"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable20"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable21"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable22"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable23"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable24"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable25"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable3"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable4"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable5"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable6"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable7"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable8"/>
    <category term="cpe:/a:squid-cache:squid:3.0.stable9"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre1"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre2"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre3"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre4"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre5"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre6"/>
    <category term="cpe:/a:squid-cache:squid:3.0:-:pre7"/>
    <category term="cpe:/a:squid-cache:squid:3.0:rc4"/>
    <category term="cpe:/a:squid-cache:squid:3.1"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.1"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.10"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.11"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.12"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.13"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.14"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.15"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.16"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.17"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.18"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.2"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.3"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.4"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.5"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.6"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.7"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.8"/>
    <category term="cpe:/a:squid-cache:squid:3.1.0.9"/>
    <category term="cpe:/a:squid-cache:squid:3.1.1"/>
    <category term="cpe:/a:squid-cache:squid:3.1.10"/>
    <category term="cpe:/a:squid-cache:squid:3.1.11"/>
    <category term="cpe:/a:squid-cache:squid:3.1.12"/>
    <category term="cpe:/a:squid-cache:squid:3.1.13"/>
    <category term="cpe:/a:squid-cache:squid:3.1.14"/>
    <category term="cpe:/a:squid-cache:squid:3.1.15"/>
    <category term="cpe:/a:squid-cache:squid:3.1.16"/>
    <category term="cpe:/a:squid-cache:squid:3.1.17"/>
    <category term="cpe:/a:squid-cache:squid:3.1.18"/>
    <category term="cpe:/a:squid-cache:squid:3.1.19"/>
    <category term="cpe:/a:squid-cache:squid:3.1.2"/>
    <category term="cpe:/a:squid-cache:squid:3.1.20"/>
    <category term="cpe:/a:squid-cache:squid:3.1.21"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.1"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.10"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.11"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.12"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.13"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.14"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.15"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.16"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.17"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.18"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.19"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.2"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.3"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.4"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.5"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.6"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.7"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.8"/>
    <category term="cpe:/a:squid-cache:squid:3.2.0.9"/>
    <category term="cpe:/a:squid-cache:squid:3.2.1"/>
    <category term="cpe:/a:squid-cache:squid:3.2.2"/>
    <category term="cpe:/a:squid-cache:squid:3.2.3"/>
    <category term="cpe:/a:squid-cache:squid:3.3.0.1"/>
    <sec:identifier>CVE-2012-5643</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5638:sanlock: The setup_logging function in log.h in SANLock uses...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5638_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5638_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5638_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The setup_logging function in log.h in SANLock uses world-writable permissions for /var/log/sanlock.log, which allows local users to overwrite the file content or bypass intended disk-quota restrictions via standard filesystem write operations.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5638_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ovirt:sanlock:-"/>
    <sec:identifier>CVE-2012-5638</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5469:phpmyadmin: The Portable phpMyAdmin plugin before 1.3.1 for Wor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5469_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5469_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5469_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5469_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.2"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.3"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.4"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.5"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.6"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.6:a"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.7"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.0.8"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.2"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.3"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.4"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.5"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.6"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.7"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.8"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.2"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.3"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.4:b"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.4:c"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.2.9.5"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.3"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:1.3:alpha"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5469</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4856:power_5, power_5_system_firmware: The Service Processor in the IBM Power 5 91##-### a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4856_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4856_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4856_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Service Processor in the IBM Power 5 91##-### and 940#-### before SF240_418_382 does not ensure that firewall code is executed, which allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4856_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:power_5:9110-510"/>
    <category term="cpe:/h:ibm:power_5:9110-51a"/>
    <category term="cpe:/h:ibm:power_5:9111-285"/>
    <category term="cpe:/h:ibm:power_5:9111-520"/>
    <category term="cpe:/h:ibm:power_5:9113-550"/>
    <category term="cpe:/h:ibm:power_5:9115-505"/>
    <category term="cpe:/h:ibm:power_5:9116-561"/>
    <category term="cpe:/h:ibm:power_5:9117-570"/>
    <category term="cpe:/h:ibm:power_5:9118-575"/>
    <category term="cpe:/h:ibm:power_5:9123-710"/>
    <category term="cpe:/h:ibm:power_5:9124-720"/>
    <category term="cpe:/h:ibm:power_5:9131-52a"/>
    <category term="cpe:/h:ibm:power_5:9133-55a"/>
    <category term="cpe:/h:ibm:power_5:9405-520"/>
    <category term="cpe:/h:ibm:power_5:9406-520"/>
    <category term="cpe:/h:ibm:power_5:9406-525"/>
    <category term="cpe:/h:ibm:power_5:9406-550"/>
    <category term="cpe:/h:ibm:power_5:9406-570"/>
    <category term="cpe:/h:ibm:power_5:9407-515"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_201_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_202_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_219_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_222_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_233_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_258_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_259_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_261_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_284_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_298_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_299_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_320_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_332_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_338_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_358_201"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_371"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_382_382"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_403_382"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_415_382"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_417"/>
    <category term="cpe:/o:ibm:power_5_system_firmware:sf240_418 and previous versions"/>
    <sec:identifier>CVE-2012-4856</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4839:rational_clearquest: The OSLC interface in the Web Client (aka CQ Web) i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4839_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4839_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4839_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The OSLC interface in the Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to conduct phishing attacks via a FRAME element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4839_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.1"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.3"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.4"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.5"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.6"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.7"/>
    <category term="cpe:/a:ibm:rational_clearquest:7.1.2.8"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.1"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.2"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.3"/>
    <category term="cpe:/a:ibm:rational_clearquest:8.0.0.4"/>
    <sec:identifier>CVE-2012-4839</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3428:ironjacamar: The IronJacamar container before 1.0.12.Final for J...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3428_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3428_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3428_AD_1.html</id>
    <published>2012-12-20T00:00:00+09:00</published>
    <updated>2012-12-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IronJacamar container before 1.0.12.Final for JBoss Application Server, when allow-multiple-users is enabled in conjunction with a security domain, does not use the credentials supplied in a getConnection function call, which allows remote attackers to obtain access to an arbitrary datasource connection in opportunistic circumstances via an invalid connection attempt.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3428_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jboss:ironjacamar:1.0.11 and previous versions"/>
    <sec:identifier>CVE-2012-3428</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005744:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12503;&#12521;&#12464;&#12452;&#12531;&#12514;&#12472;&#12517;&#12540;&#12523;&#12398;&#12452;&#12531;&#12473;&#12488;&#12540;&#12523;&#12395;&#38306;&#12377;&#12427;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005744_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005744_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005744_AD_1.html</id>
    <published>2012-12-19T16:52:58+09:00</published>
    <updated>2012-12-19T16:52:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、プラグインモジュールのインストールに関する問題が存在します。  Adobe Shockwave Player は、Shockwave コンテンツを閲覧する際に、必要な Xtra (プラグインモジュール) をインストールします。このとき、Xtra に Adobe もしくは Macromedia の正しい署名が確認できた場合、ユーザに断りなく自動的に当該 Xtra がインストールされます。必要な Xtra は Shockwave コンテンツ自身が指定できるため、既知の脆弱性を持つ、古いバージョンの Xtra をインストールさせることが可能です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005744_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005744</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005743:Adobe Shockwave Player &#12395;&#26087;&#12496;&#12540;&#12472;&#12519;&#12531;&#12398; Flash &#12521;&#12531;&#12479;&#12452;&#12512;&#12364;&#21516;&#26801;&#12373;&#12428;&#12390;&#12356;&#12427;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005743_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005743_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005743_AD_1.html</id>
    <published>2012-12-19T16:50:34+09:00</published>
    <updated>2012-12-19T16:50:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、旧バージョンの Flash ランタイムが同梱されている問題が存在します。  Adobe Shockwave Player の Full インストーラには、旧バージョンの Flash ランタイムが同梱されています。 Adobe Shockwave Player は、別途システムにインストールされた Flash ランタイムではなく、Full インストーラでインストールされた Flash ランタイムを優先して使用します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005743_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005743</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005742:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427; Shockwave &#12521;&#12531;&#12479;&#12452;&#12512;&#12398;&#12452;&#12531;&#12473;&#12488;&#12540;&#12523;&#12395;&#38306;&#12377;&#12427;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005742_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005742_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005742_AD_1.html</id>
    <published>2012-12-19T16:46:12+09:00</published>
    <updated>2012-12-19T16:46:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、Shockwave ランタイムのインストールに関する問題が存在します。  Shockwave 11 向けであることを明示していない Shockwave コンテンツを閲覧した場合、古いバージョンの Shockwave ランタイムが、ユーザに断りなく自動的にインストールされます。  なお、開発者が提供する Director 11 and Shockwave 11 Release White paper (http://www.adobe.com/support/director/ts/documents/kb403195/Director11_Whitepaper.pdf) には、以下のように記載されています。  &quot;When the user launches Shockwave content from a browser, the Shockwave 11 ActiveX control is downloaded to the &lt;%System%&gt;/Adobe/Shockwave 11 folder. If the HTML page does not specify the playerVersion as 11, the Shockwave 10.4.0.025 ActiveX control is downloaded silently, and installed in the &lt;%System%&gt;/Macromed/Shockwave10 folder.&quot;  &quot;The Shockwave auto-update mechanism installs Shockwave 11 only. The compatibility components of Shockwave 10.4.0.025 player are installed only when the user tries to play old Shockwave content with the compatibility parameter set to 10 or blank.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005742_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005742</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005741:OpenShift &#12398; &#31649;&#29702;&#12467;&#12531;&#12477;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005741_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005741_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005741_AD_1.html</id>
    <published>2012-12-19T16:42:09+09:00</published>
    <updated>2012-12-19T16:42:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenShift の 管理コンソール (openshift-console/app/controllers/application_controller.rb) には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005741_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:openshift"/>
    <sec:identifier>JVNDB-2012-005741</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005740:ownCloud &#12398; lib/filesystem.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005740_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005740_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005740_AD_1.html</id>
    <published>2012-12-19T16:32:01+09:00</published>
    <updated>2012-12-19T16:32:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ownCloud の lib/filesystem.php は、不完全なブラックリストにより、任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005740_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud"/>
    <sec:identifier>JVNDB-2012-005740</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005739:ownCloud &#12398; lib/migrate.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005739_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005739_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005739_AD_1.html</id>
    <published>2012-12-19T16:21:58+09:00</published>
    <updated>2012-12-19T16:21:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ownCloud の lib/migrate.php は、不完全なブラックリストにより、任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005739_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud"/>
    <sec:identifier>JVNDB-2012-005739</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005738:ownCloud &#12398; apps/user_webdavauth/settings.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005738_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005738_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005738_AD_1.html</id>
    <published>2012-12-19T16:11:50+09:00</published>
    <updated>2012-12-19T16:11:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ownCloud の apps/user_webdavauth/settings.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005738_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud"/>
    <sec:identifier>JVNDB-2012-005738</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005737:ownCloud &#12398; "&#12525;&#12473;&#12488;&#12539;&#12497;&#12473;&#12527;&#12540;&#12489;" &#12522;&#12475;&#12483;&#12488;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12450;&#12459;&#12454;&#12531;&#12488;&#12398;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005737_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005737_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005737_AD_1.html</id>
    <published>2012-12-19T16:04:48+09:00</published>
    <updated>2012-12-19T16:04:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ownCloud の &quot;ロスト・パスワード&quot; リセット機能は、セキュリティトークンを適切にチェックしないため、アカウントのパスワードを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005737_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud"/>
    <sec:identifier>JVNDB-2012-005737</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005736:ownCloud &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005736_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005736_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005736_AD_1.html</id>
    <published>2012-12-19T15:58:58+09:00</published>
    <updated>2012-12-19T15:58:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ownCloud には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005736_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud"/>
    <sec:identifier>JVNDB-2012-005736</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005735:GIMP &#12398; X Window Dump &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005735_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005735_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005735_AD_1.html</id>
    <published>2012-12-19T15:45:35+09:00</published>
    <updated>2012-12-19T15:45:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GIMP の X Window Dump (XWD) プラグインの file-xwd.c には、サービス運用妨害 (クラッシュ) 状態になる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005735_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnu:gimp"/>
    <sec:identifier>JVNDB-2012-005735</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005734:Symfony CMS &#12398; lib/form/sfForm.class.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005734_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005734_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005734_AD_1.html</id>
    <published>2012-12-19T15:41:04+09:00</published>
    <updated>2012-12-19T15:41:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symfony CMS の lib/form/sfForm.class.php には、任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005734_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony"/>
    <sec:identifier>JVNDB-2012-005734</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005733:OpenStack Keystone &#12395;&#12362;&#12369;&#12427;&#25215;&#35469;&#12398;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005733_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005733_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005733_AD_1.html</id>
    <published>2012-12-19T15:29:25+09:00</published>
    <updated>2012-12-19T15:29:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Keystone は、テナントからユーザロールが削除される際、EC2 トークンを適切に処理しないため、承認の制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005733_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex"/>
    <category term="cpe:/a:openstack:folsom"/>
    <category term="cpe:/a:openstack:keystone"/>
    <sec:identifier>JVNDB-2012-005733</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005732:OpenStack Keystone &#12395;&#12362;&#12369;&#12427;&#25215;&#35469;&#12398;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005732_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005732_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005732_AD_1.html</id>
    <published>2012-12-19T14:52:49+09:00</published>
    <updated>2012-12-19T14:52:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Folsom で使用される OpenStack Keystone は、トークンの有効期限切れに関する実装が適切でないため、承認の制限を回避される脆弱性が存在します。  本脆弱性は、CVE-2012-3426 のリグレッションに起因した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005732_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:folsom"/>
    <sec:identifier>JVNDB-2012-005732</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005731:bogofilter &#12398; bogolexer &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005731_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005731_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005731_AD_1.html</id>
    <published>2012-12-19T14:46:39+09:00</published>
    <updated>2012-12-19T14:46:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
bogofilter の bogolexer コンポーネント内の iconvert.c には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005731_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bogofilter:bogofilter"/>
    <sec:identifier>JVNDB-2012-005731</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005730:Perl &#12398; util.c &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005730_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005730_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005730_AD_1.html</id>
    <published>2012-12-19T11:32:27+09:00</published>
    <updated>2012-12-19T11:32:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Perl の util.c の Perl_repeatcpy 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005730_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:perl:perl"/>
    <sec:identifier>JVNDB-2012-005730</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005729:Samsung GALAXY &#12362;&#12424;&#12403; Meizu MX &#12394;&#12393; Android &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#29289;&#29702;&#12513;&#12514;&#12522;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005729_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005729_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005729_AD_1.html</id>
    <published>2012-12-19T11:09:38+09:00</published>
    <updated>2012-12-19T11:09:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Samsung GALAXY S、GALAXY Note、Meizu MX およびその他の Android デバイスのカーネルは、Exynos 4210 または 4412 プロセッサで稼働する際、/dev/exynos-mem に対して脆弱なパーミッション (0666) を使用するため、任意の物理メモリを読まれる、または書き込まれる、および権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005729_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:meizu:mx"/>
    <category term="cpe:/h:samsung:galaxy_note"/>
    <category term="cpe:/h:samsung:galaxy_s"/>
    <sec:identifier>JVNDB-2012-005729</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6007:2000_wireless_lan_controller, 2100_wireless_lan_controller, 2106_wireless_lan_con...: Cross-site scripting (XSS) vulnerability in screens...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6007_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6007_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6007_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka Bug ID CSCud65187, a different vulnerability than CVE-2012-5992.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6007_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.1"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.2"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.0"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.2"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software:7.2.110.0"/>
    <sec:identifier>CVE-2012-6007</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5992:2000_wireless_lan_controller, 2100_wireless_lan_controller, 2106_wireless_lan_con...: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5992_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5992_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5992_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrative accounts via screens/aaa/mgmtuser_create.html or (2) insert XSS sequences via the headline parameter to screens/base/web_auth_custom.html, aka Bug ID CSCud50283.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5992_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.1"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.2"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.0"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.2"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software:7.2.110.0"/>
    <sec:identifier>CVE-2012-5992</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5991:2000_wireless_lan_controller, 2100_wireless_lan_controller, 2106_wireless_lan_con...: screens/base/web_auth_custom.html on Cisco Wireless...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5991_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5991_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5991_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to cause a denial of service (device reload) via a certain buttonClicked value in an internal webauth_type request, aka Bug ID CSCud50209.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5991_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2000_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:2100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2106_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2112_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2125_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2500_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:2504_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4100_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.1"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:4.2"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.0"/>
    <category term="cpe:/h:cisco:4400_wireless_lan_controller:5.2"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4402_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:4404_wireless_lan_controller:-"/>
    <category term="cpe:/h:cisco:airespace_4000_wireless_lan_controller"/>
    <category term="cpe:/h:cisco:wireless_lan_controller"/>
    <category term="cpe:/o:cisco:wireless_lan_controller_software:7.2.110.0"/>
    <sec:identifier>CVE-2012-5991</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5978:view: Multiple directory traversal vulnerabilities in the...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5978_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5978_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5978_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple directory traversal vulnerabilities in the (1) View Connection Server and (2) View Security Server in VMware View 4.x before 4.6.2 and 5.x before 5.1.2 allow remote attackers to read arbitrary files via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5978_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:view:4.0.0"/>
    <category term="cpe:/a:vmware:view:4.0.0:u2"/>
    <category term="cpe:/a:vmware:view:4.5"/>
    <category term="cpe:/a:vmware:view:4.6.0"/>
    <category term="cpe:/a:vmware:view:4.6.1"/>
    <category term="cpe:/a:vmware:view:5.0.0"/>
    <category term="cpe:/a:vmware:view:5.0.0:u2"/>
    <category term="cpe:/a:vmware:view:5.0.1"/>
    <category term="cpe:/a:vmware:view:5.1.0"/>
    <sec:identifier>CVE-2012-5978</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5970:e585, e585u-82: The Huawei E585 device allows remote attackers to c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5970_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5970_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5970_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Huawei E585 device allows remote attackers to cause a denial of service (NULL pointer dereference and device outage) via crafted HTTP requests, as demonstrated by unspecified vulnerability-scanning software.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5970_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585:-"/>
    <category term="cpe:/h:huawei:e585u-82:-"/>
    <sec:identifier>CVE-2012-5970</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5969:e585, e585u-82: Multiple directory traversal vulnerabilities on the...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5969_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5969_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5969_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple directory traversal vulnerabilities on the Huawei E585 device allow remote attackers to (1) read arbitrary files via a .. (dot dot) in the PATH_INFO of an sdcard/ request or (2) modify arbitrary files via a .. (dot dot) in the req_page parameter to en/sms.cgi.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5969_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585:-"/>
    <category term="cpe:/h:huawei:e585u-82:-"/>
    <sec:identifier>CVE-2012-5969</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5968:e585, e585u-82: The Huawei E585 device does not validate the status...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5968_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5968_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5968_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Huawei E585 device does not validate the status of admin sessions, which allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to the LAN network.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5968_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:huawei:e585:-"/>
    <category term="cpe:/h:huawei:e585u-82:-"/>
    <sec:identifier>CVE-2012-5968</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5967:centreon: SQL injection vulnerability in menuXML.php in Centr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5967_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5967_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5967_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in menuXML.php in Centreon 2.3.3 through 2.3.9-4 allows remote authenticated users to execute arbitrary SQL commands via the menu parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5967_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:merethis:centreon:2.3.3"/>
    <category term="cpe:/a:merethis:centreon:2.3.4"/>
    <category term="cpe:/a:merethis:centreon:2.3.5"/>
    <category term="cpe:/a:merethis:centreon:2.3.6"/>
    <category term="cpe:/a:merethis:centreon:2.3.7"/>
    <category term="cpe:/a:merethis:centreon:2.3.8"/>
    <category term="cpe:/a:merethis:centreon:2.3.9"/>
    <category term="cpe:/a:merethis:centreon:2.3.9-4"/>
    <sec:identifier>CVE-2012-5967</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5691:realplayer, realplayer_sp: Buffer overflow in RealNetworks RealPlayer before 1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5691_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5691_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5691_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a crafted RealMedia file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5691_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:realnetworks:realplayer:10.0"/>
    <category term="cpe:/a:realnetworks:realplayer:10.5"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2.1744"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2.2315"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.3"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer:11.1"/>
    <category term="cpe:/a:realnetworks:realplayer:11.1.3"/>
    <category term="cpe:/a:realnetworks:realplayer:11_build_6.0.14.748"/>
    <category term="cpe:/a:realnetworks:realplayer:12.0.0.1444"/>
    <category term="cpe:/a:realnetworks:realplayer:12.0.0.1548"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.1.609"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.3"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.4.43"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.5.109"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.6.14"/>
    <category term="cpe:/a:realnetworks:realplayer:15.02.71"/>
    <category term="cpe:/a:realnetworks:realplayer:16.0.0 and previous versions"/>
    <category term="cpe:/a:realnetworks:realplayer:4"/>
    <category term="cpe:/a:realnetworks:realplayer:5"/>
    <category term="cpe:/a:realnetworks:realplayer:6"/>
    <category term="cpe:/a:realnetworks:realplayer:7"/>
    <category term="cpe:/a:realnetworks:realplayer:8"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.2"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.3"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.4"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.5"/>
    <sec:identifier>CVE-2012-5691</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5690:realplayer, realplayer_sp: RealNetworks RealPlayer before 16.0.0.282 and RealP...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5690_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5690_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5690_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allow remote attackers to execute arbitrary code via a RealAudio file that triggers access to an invalid pointer.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5690_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:realnetworks:realplayer:10.0"/>
    <category term="cpe:/a:realnetworks:realplayer:10.5"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2.1744"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.2.2315"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.3"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:11.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer:11.1"/>
    <category term="cpe:/a:realnetworks:realplayer:11.1.3"/>
    <category term="cpe:/a:realnetworks:realplayer:11_build_6.0.14.748"/>
    <category term="cpe:/a:realnetworks:realplayer:12.0.0.1444"/>
    <category term="cpe:/a:realnetworks:realplayer:12.0.0.1548"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.1.609"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.3"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:14.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.4"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.4.43"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.5.109"/>
    <category term="cpe:/a:realnetworks:realplayer:15.0.6.14"/>
    <category term="cpe:/a:realnetworks:realplayer:15.02.71"/>
    <category term="cpe:/a:realnetworks:realplayer:16.0.0 and previous versions"/>
    <category term="cpe:/a:realnetworks:realplayer:4"/>
    <category term="cpe:/a:realnetworks:realplayer:5"/>
    <category term="cpe:/a:realnetworks:realplayer:6"/>
    <category term="cpe:/a:realnetworks:realplayer:7"/>
    <category term="cpe:/a:realnetworks:realplayer:8"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.0"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.2"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.0.5"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.1"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.2"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.3"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.4"/>
    <category term="cpe:/a:realnetworks:realplayer_sp:1.1.5"/>
    <sec:identifier>CVE-2012-5690</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5178:welcart_plugin: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5178_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5178_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5178_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the Welcart plugin before 1.2.2 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that complete a purchase.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5178_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:welcart:welcart_plugin:0.5"/>
    <category term="cpe:/a:welcart:welcart_plugin:0.9.1"/>
    <category term="cpe:/a:welcart:welcart_plugin:1.2.1 and previous versions"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5178</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5177:welcart_plugin: Cross-site scripting (XSS) vulnerability in the Wel...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5177_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5177_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5177_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Welcart plugin before 1.2.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5177_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:welcart:welcart_plugin:0.5"/>
    <category term="cpe:/a:welcart:welcart_plugin:0.9.1"/>
    <category term="cpe:/a:welcart:welcart_plugin:1.2.1"/>
    <category term="cpe:/a:welcart:welcart_plugin:1.2.2"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5177</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4848:lotus_foundations_start: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4848_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4848_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4848_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Foundations Start before 1.2.2c allow remote authenticated users to inject arbitrary web script or HTML via a Webconfig Users user-attribute field, as demonstrated by the (1) First Name or (2) Last Name field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4848_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:lotus_foundations_start:1.0"/>
    <category term="cpe:/a:ibm:lotus_foundations_start:1.1"/>
    <category term="cpe:/a:ibm:lotus_foundations_start:1.2"/>
    <category term="cpe:/a:ibm:lotus_foundations_start:1.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4848</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4846:lotus_notes: IBM Lotus Notes 8.5.x before 8.5.3 FP3 does not inc...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4846_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4846_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4846_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Lotus Notes 8.5.x before 8.5.3 FP3 does not include the HTTPOnly flag in a Set-Cookie header for a web-application cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, aka SPRs JMAS7TRNLN and SRAO8U3Q68.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4846_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:lotus_notes:8.5.0.0"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.0.1"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.0"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.1"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.2"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.3"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.4"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.1.5"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.2.0"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.2.1"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.2.2"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.2.3"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.3"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.3.1"/>
    <category term="cpe:/a:ibm:lotus_notes:8.5.3.2"/>
    <sec:identifier>CVE-2012-4846</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4534:tomcat: org/apache/tomcat/util/net/NioEndpoint.java in Apac...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4534_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4534_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4534_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28, when the NIO connector is used in conjunction with sendfile and HTTPS, allows remote attackers to cause a denial of service (infinite loop) by terminating the connection during the reading of a response.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4534_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-4534</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4431:tomcat: org/apache/catalina/filters/CsrfPreventionFilter.ja...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4431_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4431_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4431_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
org/apache/catalina/filters/CsrfPreventionFilter.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.32 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism via a request that lacks a session identifier.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4431_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.30"/>
    <category term="cpe:/a:apache:tomcat:7.0.32"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-4431</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3546:tomcat: org/apache/catalina/realm/RealmBase.java in Apache ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3546_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3546_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3546_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3546_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-3546</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3329:advanced_settings_utility, bootable_media_creator: IBM Advanced Settings Utility (ASU) through 3.62 an...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3329_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3329_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3329_AD_1.html</id>
    <published>2012-12-19T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Advanced Settings Utility (ASU) through 3.62 and 3.70 through 9.21 and Bootable Media Creator (BoMC) through 2.30 and 3.00 through 9.21 on Linux allow local users to overwrite arbitrary files via a symlink attack on a (1) temporary file or (2) log file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3329_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:advanced_settings_utility:3.62"/>
    <category term="cpe:/a:ibm:advanced_settings_utility:3.70"/>
    <category term="cpe:/a:ibm:advanced_settings_utility:9.21"/>
    <category term="cpe:/a:ibm:bootable_media_creator:2.30"/>
    <category term="cpe:/a:ibm:bootable_media_creator:3.00"/>
    <category term="cpe:/a:ibm:bootable_media_creator:9.21"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>CVE-2012-3329</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4350:enterprise_security_manager: Multiple unquoted Windows search path vulnerabiliti...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4350_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4350_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4350_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unquoted Windows search path vulnerabilities in the (1) Manager and (2) Agent components in Symantec Enterprise Security Manager (ESM) before 11.0 allow local users to gain privileges via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4350_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:enterprise_security_manager:10.0 and previous versions"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.0"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.5"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.5.0"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.5.1"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.5.2"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:6.5.3"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:9.0"/>
    <category term="cpe:/a:symantec:enterprise_security_manager:9.0.1"/>
    <sec:identifier>CVE-2012-4350</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4348:endpoint_protection: The management console in Symantec Endpoint Protect...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4348_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4348_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4348_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The management console in Symantec Endpoint Protection (SEP) 11.0 before RU7-MP3 and 12.1 before RU2, and Symantec Endpoint Protection Small Business Edition 12.x before 12.1 RU2, does not properly validate input for PHP scripts, which allows remote authenticated users to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4348_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:endpoint_protection:11.0"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.1"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.1:mp1"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.1:mp2"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.2"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.2:mp1"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.2:mp2"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.3001"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.4"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.4:mp1a"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.4:mp2"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.6000"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.6100"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.6200"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.6200.754"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.6300"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.7000"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0.7100"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0:ru5"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0:ru6"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0:ru6a"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0:ru6mp1"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0:ru6mp2"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.0:-:small_business"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.1"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.1.1000"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.1.671"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.1:-:small_business"/>
    <sec:identifier>CVE-2012-4348</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4898:1310_distrubution_automation_mesh_router, 1410_mesh_router, 1410_wireless_mesh_ro...: Mesh OS before 7.9.1.1 on Tropos wireless mesh rout...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4898_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4898_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4898_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mesh OS before 7.9.1.1 on Tropos wireless mesh routers does not use a sufficient source of entropy for SSH keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a client-server data stream by leveraging knowledge of a key from a product installation elsewhere.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4898_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:tropos:1310_distrubution_automation_mesh_router:-"/>
    <category term="cpe:/h:tropos:1410_mesh_router:-"/>
    <category term="cpe:/h:tropos:1410_wireless_mesh_router:-"/>
    <category term="cpe:/h:tropos:3310_indoor_mesh_router:-"/>
    <category term="cpe:/h:tropos:3320_indoor_mesh_router:-"/>
    <category term="cpe:/h:tropos:4310_mobile_mesh_router:-"/>
    <category term="cpe:/h:tropos:6310_mesh_router:-"/>
    <category term="cpe:/h:tropos:6320_mesh_router:-"/>
    <category term="cpe:/o:tropos:mesh_os:7.9.1 and previous versions"/>
    <sec:identifier>CVE-2012-4898</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4693:processsuite, wonderware_intouch: Invensys Wonderware InTouch 2012 R2 and earlier and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4693_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4693_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4693_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Invensys Wonderware InTouch 2012 R2 and earlier and Siemens ProcessSuite use a weak encryption algorithm for data in Ps_security.ini, which makes it easier for local users to discover passwords by reading this file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4693_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:invensys:wonderware_intouch:2012:r2 and previous versions"/>
    <category term="cpe:/a:siemens:processsuite:-"/>
    <sec:identifier>CVE-2012-4693</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4691:automation_license_manager: Memory leak in Siemens Automation License Manager (...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4691_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4691_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4691_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Memory leak in Siemens Automation License Manager (ALM) 4.x and 5.x before 5.2 allows remote attackers to cause a denial of service (memory consumption) via crafted packets.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4691_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:siemens:automation_license_manager:4.0"/>
    <category term="cpe:/a:siemens:automation_license_manager:5.0"/>
    <category term="cpe:/a:siemens:automation_license_manager:5.1"/>
    <category term="cpe:/a:siemens:automation_license_manager:5.1:sp1"/>
    <sec:identifier>CVE-2012-4691</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5622:openshift: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5622_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5622_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5622_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5622_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:openshift:0.0.5"/>
    <sec:identifier>CVE-2012-5622</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5610:owncloud: Incomplete blacklist vulnerability in lib/filesyste...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5610_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5610_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5610_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Incomplete blacklist vulnerability in lib/filesystem.php in ownCloud before 4.0.9 and 4.5.x before 4.5.2 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a special crafted name.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5610_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud:3.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.4"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.5"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.6"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.7"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.8 and previous versions"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.1"/>
    <sec:identifier>CVE-2012-5610</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5609:owncloud: Incomplete blacklist vulnerability in lib/migrate.p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5609_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5609_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5609_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Incomplete blacklist vulnerability in lib/migrate.php in ownCloud before 4.5.2 allows remote authenticated users to execute arbitrary PHP code by uploading a crafted mount.php file in a ZIP file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5609_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud:3.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.4"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.5"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.6"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.7"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.8"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.9"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.1 and previous versions"/>
    <sec:identifier>CVE-2012-5609</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5608:owncloud: Cross-site scripting (XSS) vulnerability in apps/us...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5608_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5608_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5608_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in apps/user_webdavauth/settings.php in ownCloud 4.5.x before 4.5.2 allows remote attackers to inject arbitrary web script or HTML via arbitrary POST parameters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5608_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud:4.5.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.1"/>
    <sec:identifier>CVE-2012-5608</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5607:owncloud: The "Lost Password" reset functionality in ownCloud...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5607_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5607_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5607_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The &quot;Lost Password&quot; reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a &quot;Remote Timing Attack.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5607_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud:3.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.4"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.5"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.6"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.7"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.8 and previous versions"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.0"/>
    <sec:identifier>CVE-2012-5607</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5606:owncloud: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5606_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5606_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5606_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 4.0.9 and 4.5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) file name to apps/files_versions/js/versions.js or (2) apps/files/js/filelist.js; or (3) event title to 3rdparty/fullcalendar/js/fullcalendar.js.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5606_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:owncloud:owncloud:3.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:3.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.0"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.1"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.2"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.3"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.4"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.5"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.6"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.7"/>
    <category term="cpe:/a:owncloud:owncloud:4.0.8 and previous versions"/>
    <category term="cpe:/a:owncloud:owncloud:4.5.0"/>
    <sec:identifier>CVE-2012-5606</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5576:gimp: Multiple stack-based buffer overflows in file-xwd.c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5576_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5576_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5576_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple stack-based buffer overflows in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.8.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large (1) red, (2) green, or (3) blue color mask in an XWD file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5576_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gimp:gimp:2.8.2"/>
    <sec:identifier>CVE-2012-5576</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5574:symfony: lib/form/sfForm.class.php in Symfony CMS before 1.4...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5574_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5574_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5574_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
lib/form/sfForm.class.php in Symfony CMS before 1.4.20 allows remote attackers to read arbitrary files via a crafted upload request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5574_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sensiolabs:symfony:1.4.0"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.0:rc1"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.0:rc2"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.1"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.10"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.11"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.12"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.13"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.14"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.15"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.16"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.17"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.18"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.19 and previous versions"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.2"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.3"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.4"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.5"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.6"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.7"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.8"/>
    <category term="cpe:/a:sensiolabs:symfony:1.4.9"/>
    <sec:identifier>CVE-2012-5574</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5571:essex, folsom: OpenStack Keystone Essex (2012.1) and Folsom (2012....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5571_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5571_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5571_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
OpenStack Keystone Essex (2012.1) and Folsom (2012.2) does not properly handle EC2 tokens when the user role has been removed from a tenant, which allows remote authenticated users to bypass intended authorization restrictions by leveraging a token for the removed user role.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5571_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex:2012.1"/>
    <category term="cpe:/a:openstack:folsom:2012.2"/>
    <sec:identifier>CVE-2012-5571</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5563:folsom: OpenStack Keystone, as used in OpenStack Folsom 201...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5563_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5563_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5563_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
OpenStack Keystone, as used in OpenStack Folsom 2012.2, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by creating new tokens through token chaining.  NOTE: this issue exists because of a CVE-2012-3426 regression.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5563_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:folsom:2012.2"/>
    <sec:identifier>CVE-2012-5563</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5468:bogofilter: Heap-based buffer overflow in iconvert.c in the bog...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5468_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5468_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5468_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in iconvert.c in the bogolexer component in Bogofilter before 1.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an email containing a base64 string that is decoded to incomplete multibyte characters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5468_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.0.0"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.0.1"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.0.2"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.0.3"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.0"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.1"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.2"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.3"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.4"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.5"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.6"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.1.7"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.2.0"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.2.1"/>
    <category term="cpe:/a:bogofilter_project:bogofilter:1.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-5468</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6422:galaxy_note, galaxy_s, mx: The kernel in Samsung Galaxy S2, Galaxy Note 2, MEI...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write arbitrary physical memory and gain privileges via a crafted application, as demonstrated by ExynosAbuse.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6422_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:meizu:mx:-"/>
    <category term="cpe:/h:samsung:galaxy_note:2"/>
    <category term="cpe:/h:samsung:galaxy_s:2"/>
    <sec:identifier>CVE-2012-6422</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5195:perl: Heap-based buffer overflow in the Perl_repeatcpy fu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5195_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5195_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5195_AD_1.html</id>
    <published>2012-12-18T00:00:00+09:00</published>
    <updated>2012-12-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the Perl_repeatcpy function in util.c in Perl 5.12.x before 5.12.5, 5.14.x before 5.14.3, and 5.15.x before 15.15.5 allows context-dependent attackers to cause a denial of service (memory consumption and crash) or possibly execute arbitrary code via the 'x' string repeat operator.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5195_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:perl:perl:5.12.0"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc0"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc3"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc4"/>
    <category term="cpe:/a:perl:perl:5.12.0:rc5"/>
    <category term="cpe:/a:perl:perl:5.12.1"/>
    <category term="cpe:/a:perl:perl:5.12.1:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.1:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.2"/>
    <category term="cpe:/a:perl:perl:5.12.2:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.3"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc1"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc2"/>
    <category term="cpe:/a:perl:perl:5.12.3:rc3"/>
    <category term="cpe:/a:perl:perl:5.12.4"/>
    <category term="cpe:/a:perl:perl:5.14.0"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc1"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc2"/>
    <category term="cpe:/a:perl:perl:5.14.0:rc3"/>
    <category term="cpe:/a:perl:perl:5.14.1"/>
    <category term="cpe:/a:perl:perl:5.14.2"/>
    <sec:identifier>CVE-2012-5195</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000110:WikkaWiki &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000110_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000110_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000110_AD_1.html</id>
    <published>2012-12-17T12:01:33+09:00</published>
    <updated>2012-12-17T12:01:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WikkaWiki は、Wiki 機能を提供するソフトウェアです。WikkaWiki には、クロスサイトスクリプティングの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 株式会社 サイバーディフェンス研究所 福森 大喜 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000110_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wikkawiki:wikkawiki"/>
    <sec:identifier>JVNDB-2012-000110</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005728:Xen &#12398; HVM &#21046;&#24481;&#25805;&#20316;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#29289;&#29702; CPU &#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005728_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005728_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005728_AD_1.html</id>
    <published>2012-12-14T16:23:44+09:00</published>
    <updated>2012-12-14T16:23:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の HVM 制御操作には、サービス運用妨害 (物理 CPU の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005728_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005728</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005727:Xen &#12398; get_page_from_gfn hypercall &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005727_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005727_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005727_AD_1.html</id>
    <published>2012-12-14T16:22:34+09:00</published>
    <updated>2012-12-14T16:22:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の get_page_from_gfn hypercall 関数 には、サービス運用妨害 (クラッシュ) 状態となる脆弱税が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005727_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005727</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005726:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005726_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005726_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005726_AD_1.html</id>
    <published>2012-12-14T16:21:51+09:00</published>
    <updated>2012-12-14T16:21:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の (1) XENMEM_decrease_reservation、(2) XENMEM_populate_physmap、または (3) XENMEM_exchange ハイパーコールには、サービス運用妨害 (ロングループおよびハング) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005726_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005726</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005725:Xen &#12398; guest_physmap_mark_populate_on_demand &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12495;&#12531;&#12464;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005725_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005725_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005725_AD_1.html</id>
    <published>2012-12-14T16:20:30+09:00</published>
    <updated>2012-12-14T16:20:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の guest_physmap_mark_populate_on_demand 関数は、使用されているかどうかを確認する際に、対象となる GFNs のロックを適切に解除しないため、サービス運用妨害 (ハング) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005725_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005725</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005724:Xen &#12398; XENMEM_exchange &#12495;&#12531;&#12489;&#12521;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005724_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005724_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005724_AD_1.html</id>
    <published>2012-12-14T16:18:41+09:00</published>
    <updated>2012-12-14T16:18:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の XENMEM_exchange ハンドラは、メモリアドレスを適切にチェックしないため、サービス運用妨害 (クラッシュ) 状態となる、または権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005724_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005724</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005723:Xen &#12398; HVMOP_set_mem_access &#12495;&#12531;&#12489;&#12521;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005723_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005723_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005723_AD_1.html</id>
    <published>2012-12-14T16:17:25+09:00</published>
    <updated>2012-12-14T16:17:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の HVMOP_set_mem_access ハンドラは、配列のインデックスエラーにより、サービス運用妨害 (クラッシュ) 状態となる、または重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005723_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005723</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005722:Xen &#12398; VRAM &#27738;&#26579;&#12488;&#12521;&#12483;&#12461;&#12531;&#12464;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005722_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005722_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005722_AD_1.html</id>
    <published>2012-12-14T16:15:07+09:00</published>
    <updated>2012-12-14T16:15:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の VRAM 汚染トラッキング機能 (dirty video RAM tracking functionality) には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005722_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005722</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005721:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12495;&#12452;&#12497;&#12540;&#12496;&#12452;&#12470;&#12398;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005721_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005721_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005721_AD_1.html</id>
    <published>2012-12-14T16:12:36+09:00</published>
    <updated>2012-12-14T16:12:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen は、グラントテーブル (権限テーブル) のバージョンをダウングレードした場合、ページを解放する際にトラッキングリストからステータスページを適切に削除しないため、サービス運用妨害 (ハイパーバイザのクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005721_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2012-005721</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005210:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;&#12362;&#12424;&#12403;&#12507;&#12473;&#12488;&#12495;&#12531;&#12464;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005210_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005210_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005210_AD_1.html</id>
    <published>2012-12-14T16:03:57+09:00</published>
    <updated>2012-12-14T16:03:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen には、サービス運用妨害 (CPU 資源の消費およびホストハング) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005210_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:xensource:xen"/>
    <sec:identifier>JVNDB-2011-005210</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005720:Centreon &#12395;&#12502;&#12521;&#12452;&#12531;&#12489; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005720_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005720_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005720_AD_1.html</id>
    <published>2012-12-14T15:59:18+09:00</published>
    <updated>2012-12-14T15:59:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Centreon には、ブラインド SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005720_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:centreon:centreon"/>
    <sec:identifier>JVNDB-2012-005720</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005719:IBM POWER5 &#12398;&#12469;&#12540;&#12499;&#12473;&#12539;&#12503;&#12525;&#12475;&#12483;&#12469;&#12540;&#12395;&#27177;&#38480;&#26119;&#26684;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005719_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005719_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005719_AD_1.html</id>
    <published>2012-12-14T15:55:50+09:00</published>
    <updated>2012-12-14T15:55:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM POWER5 のサービス・プロセッサーには、権限昇格の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005719_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:ibm_power_5_system"/>
    <sec:identifier>JVNDB-2012-005719</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005718:D-Link DSL-2730u &#12395; OS &#12467;&#12510;&#12531;&#12489;&#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005718_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005718_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005718_AD_1.html</id>
    <published>2012-12-14T15:49:19+09:00</published>
    <updated>2012-12-14T15:49:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
D-Link DSL-2730u には、OS コマンドインジェクションの脆弱性が存在します。  D-Link DSL-2730u には、許可されたコマンドのリストによるチェック方法に問題があり、任意の OS コマンドが実行可能な脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005718_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link:dsl-2730u"/>
    <sec:identifier>JVNDB-2012-005718</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005717:Axway SecureTransport &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005717_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005717_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005717_AD_1.html</id>
    <published>2012-12-14T14:49:53+09:00</published>
    <updated>2012-12-14T14:49:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Axway SecureTransport には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005717_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:axway:securetransport"/>
    <sec:identifier>JVNDB-2012-005717</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005716:Adobe Photoshop Camera Raw &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005716_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005716_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005716_AD_1.html</id>
    <published>2012-12-14T14:00:58+09:00</published>
    <updated>2012-12-14T14:00:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Photoshop Camera Raw には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005716_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:camera_raw"/>
    <sec:identifier>JVNDB-2012-005716</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005715:Adobe Photoshop Camera Raw &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005715_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005715_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005715_AD_1.html</id>
    <published>2012-12-14T14:00:31+09:00</published>
    <updated>2012-12-14T14:00:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Photoshop Camera Raw には、バッファアンダーフローにより、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005715_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:camera_raw"/>
    <sec:identifier>JVNDB-2012-005715</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005714:Itanium &#12362;&#12424;&#12403; Alpha &#12503;&#12521;&#12483;&#12488;&#12501;&#12457;&#12540;&#12512;&#19978;&#12398; HP OpenVMS &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005714_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005714_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005714_AD_1.html</id>
    <published>2012-12-14T12:12:22+09:00</published>
    <updated>2012-12-14T12:12:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Itanium および Alpha プラットフォーム上で稼働する HP OpenVMS は、LOGIN および ACME_SERVER ACMELOGIN プログラムを適切に実装しないため、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005714_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:openvms"/>
    <sec:identifier>JVNDB-2012-005714</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005713:Itanium &#12362;&#12424;&#12403; Alpha &#12503;&#12521;&#12483;&#12488;&#12501;&#12457;&#12540;&#12512;&#19978;&#12398; HP OpenVMS &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005713_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005713_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005713_AD_1.html</id>
    <published>2012-12-14T12:11:18+09:00</published>
    <updated>2012-12-14T12:11:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Itanium および Alpha プラットフォーム上で稼働する HP OpenVMS は、LOGIN および ACME_SERVER ACMELOGIN プログラムを適切に実装していないため、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005713_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:openvms"/>
    <sec:identifier>JVNDB-2012-005713</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000109:Welcart &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000109_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000109_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000109_AD_1.html</id>
    <published>2012-12-14T12:02:35+09:00</published>
    <updated>2012-12-14T12:02:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
コルネ株式会社が提供する Welcart は、ショッピングサイトを構築するための WordPress プラグインです。 Welcart には、クロスサイトリクエストフォージェリの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 株式会社 神戸デジタル・ラボ 松本 悦宜 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000109_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:collne_welcart"/>
    <sec:identifier>JVNDB-2012-000109</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000108:Welcart &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000108_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000108_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000108_AD_1.html</id>
    <published>2012-12-14T12:02:00+09:00</published>
    <updated>2012-12-14T12:02:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
コルネ株式会社が提供する Welcart は、ショッピングサイトを構築するための WordPress プラグインです。 Welcart には、クロスサイトスクリプティングの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 株式会社 神戸デジタル・ラボ 松本 悦宜 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000108_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:collne_welcart"/>
    <sec:identifier>JVNDB-2012-000108</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005712:Layton Helpbox &#12395;&#12362;&#12369;&#12427;&#12525;&#12464;&#12452;&#12531;&#12506;&#12540;&#12472;&#12398;&#24179;&#25991;&#12398;&#35469;&#35388;&#24773;&#22577;&#12434;&#28431;&#12360;&#12356;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005712_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005712_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005712_AD_1.html</id>
    <published>2012-12-13T15:30:04+09:00</published>
    <updated>2012-12-13T15:30:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox には、ログインページの平文の認証情報を漏えいする脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005712_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005712</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005711:Layton Helpbox &#12395;&#12362;&#12369;&#12427; ODBC &#12487;&#12540;&#12479;&#12505;&#12540;&#12473;&#12398;&#35469;&#35388;&#24773;&#22577;&#12434;&#28431;&#12360;&#12356;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005711_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005711_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005711_AD_1.html</id>
    <published>2012-12-13T15:29:13+09:00</published>
    <updated>2012-12-13T15:29:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox の selectawasset.asp には、ODBC データベースの認証情報を漏えいする脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005711_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005711</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005710:Layton Helpbox &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12469;&#12509;&#12540;&#12488;&#12481;&#12465;&#12483;&#12488;&#12398;&#12487;&#12540;&#12479;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005710_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005710_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005710_AD_1.html</id>
    <published>2012-12-13T15:26:29+09:00</published>
    <updated>2012-12-13T15:26:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox の editrequestuser.asp には、任意のサポートチケットのデータを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005710_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005710</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005709:Layton Helpbox &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005709_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005709_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005709_AD_1.html</id>
    <published>2012-12-13T15:25:59+09:00</published>
    <updated>2012-12-13T15:25:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox には、ログインコンテキストを変更され、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005709_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005709</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005708:Layton Helpbox &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005708_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005708_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005708_AD_1.html</id>
    <published>2012-12-13T15:25:28+09:00</published>
    <updated>2012-12-13T15:25:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005708_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005708</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005707:Layton Helpbox &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005707_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005707_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005707_AD_1.html</id>
    <published>2012-12-13T15:23:53+09:00</published>
    <updated>2012-12-13T15:23:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Layton Helpbox には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005707_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox"/>
    <sec:identifier>JVNDB-2012-005707</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005706:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12473;&#12479;&#12483;&#12463;&#12513;&#12514;&#12522;&#30772;&#25613;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005706_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005706_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005706_AD_1.html</id>
    <published>2012-12-13T15:21:33+09:00</published>
    <updated>2012-12-13T15:21:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、AAC 復号を適切に実行しないため、サービス運用妨害 (スタックメモリ破損) 状態など、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005706_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005706</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005705:Google Chrome &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005705_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005705_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005705_AD_1.html</id>
    <published>2012-12-13T15:20:57+09:00</published>
    <updated>2012-12-13T15:20:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、PPAPI イメージバッファに関する処理に不備があるため、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005705_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005705</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005704:Google Chrome &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005704_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005704_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005704_AD_1.html</id>
    <published>2012-12-13T15:20:33+09:00</published>
    <updated>2012-12-13T15:20:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、履歴のナビゲーションを適切に処理しないため、任意のコードを実行される、またはサービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005704_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005704</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005703:Google Chrome &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005703_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005703_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005703_AD_1.html</id>
    <published>2012-12-13T15:17:36+09:00</published>
    <updated>2012-12-13T15:17:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、Chromoting クライアントプラグインのインスタンス化を適切に制限しないため、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005703_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005703</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005702:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005702_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005702_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005702_AD_1.html</id>
    <published>2012-12-13T15:17:07+09:00</published>
    <updated>2012-12-13T15:17:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) による URL ローダーに関する処理に不備があるため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005702_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005702</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005701:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005701_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005701_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005701_AD_1.html</id>
    <published>2012-12-13T15:04:44+09:00</published>
    <updated>2012-12-13T15:04:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) による検出イベントに関する処理に不備があるため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005701_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005701</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005700:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005700_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005700_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005700_AD_1.html</id>
    <published>2012-12-13T15:03:32+09:00</published>
    <updated>2012-12-13T15:03:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005700_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005700</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005699:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005699_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005699_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005699_AD_1.html</id>
    <published>2012-12-13T15:02:47+09:00</published>
    <updated>2012-12-13T15:02:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005699_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005699</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005698:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005698_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005698_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005698_AD_1.html</id>
    <published>2012-12-13T15:00:38+09:00</published>
    <updated>2012-12-13T15:00:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005698_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005698</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005697:Adobe ColdFusion &#12395;&#12362;&#12369;&#12427;&#20849;&#26377;&#12507;&#12473;&#12486;&#12451;&#12531;&#12464;&#12391;&#12398;&#12469;&#12531;&#12489;&#12508;&#12483;&#12463;&#12473;&#12398;&#12497;&#12540;&#12511;&#12483;&#12471;&#12519;&#12531;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005697_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005697_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005697_AD_1.html</id>
    <published>2012-12-13T14:59:40+09:00</published>
    <updated>2012-12-13T14:59:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe ColdFusion には、共有ホスティングでのサンドボックスのパーミッションを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005697_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:coldfusion"/>
    <sec:identifier>JVNDB-2012-005697</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005696:Microsoft Windows Server 2008 R2 &#12362;&#12424;&#12403; Windows Server 2012 &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005696_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005696_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005696_AD_1.html</id>
    <published>2012-12-13T14:17:04+09:00</published>
    <updated>2012-12-13T14:17:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows Server 2008 R2 および Windows Server 2012 の IP-HTTPS サーバには、アクセス制限を回避される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「失効した証明書によるバイパスの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005696_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005696</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005695:&#35079;&#25968;&#12398; Microsoft Windows &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005695_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005695_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005695_AD_1.html</id>
    <published>2012-12-13T14:14:50+09:00</published>
    <updated>2012-12-13T14:14:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft Windows 製品の DirectPlay 内の DirectX には、ヒープベースのバッファオーバーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「DirectPlay のヒープ オーバーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005695_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:directx"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005695</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005694:Microsoft Windows &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005694_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005694_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005694_AD_1.html</id>
    <published>2012-12-13T14:13:08+09:00</published>
    <updated>2012-12-13T14:13:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows には、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Windows ファイル名解析の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005694_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005694</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005693:Microsoft Exchange Server 2007 &#12362;&#12424;&#12403; 2010 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005693_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005693_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005693_AD_1.html</id>
    <published>2012-12-13T14:01:18+09:00</published>
    <updated>2012-12-13T14:01:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Exchange Server 2007 および 2010 には、サービス運用妨害 (Information Store サービスのハング) 状態となる脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「RSS フィードが Exchange のサービス拒否を引き起こす可能性のある脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005693_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:exchange_server"/>
    <sec:identifier>JVNDB-2012-005693</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005692:&#35079;&#25968;&#12398; Microsoft &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005692_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005692_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005692_AD_1.html</id>
    <published>2012-12-13T13:59:09+09:00</published>
    <updated>2012-12-13T13:59:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft 製品には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Word RTF 'listoverridecount' のリモートでコードが実行される脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005692_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:office_compatibility_pack"/>
    <category term="cpe:/a:microsoft:office_web_apps"/>
    <category term="cpe:/a:microsoft:visio"/>
    <category term="cpe:/a:microsoft:word"/>
    <category term="cpe:/a:microsoft:word_viewer"/>
    <sec:identifier>JVNDB-2012-005692</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005691:&#35079;&#25968;&#12398; Microsoft Windows &#35069;&#21697;&#12398;&#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005691_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005691_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005691_AD_1.html</id>
    <published>2012-12-13T13:56:38+09:00</published>
    <updated>2012-12-13T13:56:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft Windows 製品のカーネルモードドライバ内の OpenType フォント (OTF) ドライバには、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「OpenType フォントの解析の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005691_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005691</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005690:&#35079;&#25968;&#12398; Microsoft Windows &#35069;&#21697;&#12398;&#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005690_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005690_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005690_AD_1.html</id>
    <published>2012-12-13T13:55:34+09:00</published>
    <updated>2012-12-13T13:55:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft Windows 製品のカーネルモードドライバには、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「TrueType フォントの解析の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005690_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005690</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005689:Microsoft Internet Explorer 9 &#12362;&#12424;&#12403; 10 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005689_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005689_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005689_AD_1.html</id>
    <published>2012-12-13T13:47:53+09:00</published>
    <updated>2012-12-13T13:47:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 9 および 10 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「不適切な参照カウントの解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005689_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_rt"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005689</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005688:Microsoft Internet Explorer 9 &#12362;&#12424;&#12403; 10 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005688_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005688_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005688_AD_1.html</id>
    <published>2012-12-13T13:36:24+09:00</published>
    <updated>2012-12-13T13:36:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 9 および 10 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「CMarkup の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005688_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_rt"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005688</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005687:Microsoft Internet Explorer 6 &#12363;&#12425; 10 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005687_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005687_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005687_AD_1.html</id>
    <published>2012-12-13T13:35:28+09:00</published>
    <updated>2012-12-13T13:35:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 6 から 10 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「InjectHTMLStream の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005687_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_rt"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005687</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005686:WordPress &#29992; Simple Gmail Login &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005686_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005686_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005686_AD_1.html</id>
    <published>2012-12-13T11:33:46+09:00</published>
    <updated>2012-12-13T11:33:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Simple Gmail Login プラグインの simple-gmail-login.php には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005686_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:victor_jonsson_simple_gmail_login"/>
    <sec:identifier>JVNDB-2012-005686</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005685:WordPress &#29992; Video Lead Form &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005685_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005685_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005685_AD_1.html</id>
    <published>2012-12-13T11:29:37+09:00</published>
    <updated>2012-12-13T11:29:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Video Lead Form プラグインには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005685_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:video-lead-form:uk-cookie"/>
    <sec:identifier>JVNDB-2012-005685</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005684:Symantec Network Access Control &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005684_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005684_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005684_AD_1.html</id>
    <published>2012-12-13T10:58:52+09:00</published>
    <updated>2012-12-13T10:58:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec Network Access Control には、権限を取得される、またはサービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005684_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:network_access_control"/>
    <sec:identifier>JVNDB-2012-005684</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005683:Android &#12398;&#12502;&#12521;&#12454;&#12470;&#12450;&#12503;&#12522;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005683_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005683_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005683_AD_1.html</id>
    <published>2012-12-13T10:57:46+09:00</published>
    <updated>2012-12-13T10:57:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android のブラウザアプリには、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005683_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android"/>
    <sec:identifier>JVNDB-2012-005683</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005682:Unix &#12362;&#12424;&#12403; Linux &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; CA XCOM Data Transport &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005682_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005682_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005682_AD_1.html</id>
    <published>2012-12-13T10:56:56+09:00</published>
    <updated>2012-12-13T10:56:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Unix および Linux 上で稼動する CA XCOM Data Transport には、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005682_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:xcom_data_transport"/>
    <sec:identifier>JVNDB-2012-005682</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6333:xen: Multiple HVM control operations in Xen 3.4 through ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6333_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6333_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6333_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple HVM control operations in Xen 3.4 through 4.2 allow local HVM guest OS administrators to cause a denial of service (physical CPU consumption) via a large input.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6333_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6333</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5966:dsl-2730u: The restricted telnet shell on the D-Link DSL2730U ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5966_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5966_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5966_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The restricted telnet shell on the D-Link DSL2730U router allows remote authenticated users to bypass intended command restrictions via shell metacharacters that follow a whitelisted command.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5966_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link:dsl-2730u:-"/>
    <sec:identifier>CVE-2012-5966</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5680:camera_raw: Buffer overflow in Adobe Photoshop Camera Raw befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5680_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5680_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5680_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Photoshop Camera Raw before 7.3 allows attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5680_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:camera_raw:2.1"/>
    <category term="cpe:/a:adobe:camera_raw:2.2"/>
    <category term="cpe:/a:adobe:camera_raw:2.3"/>
    <category term="cpe:/a:adobe:camera_raw:2.4"/>
    <category term="cpe:/a:adobe:camera_raw:3.1"/>
    <category term="cpe:/a:adobe:camera_raw:3.2"/>
    <category term="cpe:/a:adobe:camera_raw:3.3"/>
    <category term="cpe:/a:adobe:camera_raw:3.4"/>
    <category term="cpe:/a:adobe:camera_raw:3.5"/>
    <category term="cpe:/a:adobe:camera_raw:3.6"/>
    <category term="cpe:/a:adobe:camera_raw:3.7"/>
    <category term="cpe:/a:adobe:camera_raw:4.0"/>
    <category term="cpe:/a:adobe:camera_raw:4.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.2"/>
    <category term="cpe:/a:adobe:camera_raw:4.3.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.4.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.5"/>
    <category term="cpe:/a:adobe:camera_raw:4.6"/>
    <category term="cpe:/a:adobe:camera_raw:5.0"/>
    <category term="cpe:/a:adobe:camera_raw:5.1"/>
    <category term="cpe:/a:adobe:camera_raw:5.2"/>
    <category term="cpe:/a:adobe:camera_raw:5.3"/>
    <category term="cpe:/a:adobe:camera_raw:5.4"/>
    <category term="cpe:/a:adobe:camera_raw:5.5"/>
    <category term="cpe:/a:adobe:camera_raw:7.2 and previous versions"/>
    <sec:identifier>CVE-2012-5680</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5679:camera_raw: Buffer underflow in Adobe Photoshop Camera Raw befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5679_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5679_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5679_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer underflow in Adobe Photoshop Camera Raw before 7.3 allows attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5679_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:camera_raw:2.1"/>
    <category term="cpe:/a:adobe:camera_raw:2.2"/>
    <category term="cpe:/a:adobe:camera_raw:2.3"/>
    <category term="cpe:/a:adobe:camera_raw:2.4"/>
    <category term="cpe:/a:adobe:camera_raw:3.1"/>
    <category term="cpe:/a:adobe:camera_raw:3.2"/>
    <category term="cpe:/a:adobe:camera_raw:3.3"/>
    <category term="cpe:/a:adobe:camera_raw:3.4"/>
    <category term="cpe:/a:adobe:camera_raw:3.5"/>
    <category term="cpe:/a:adobe:camera_raw:3.6"/>
    <category term="cpe:/a:adobe:camera_raw:3.7"/>
    <category term="cpe:/a:adobe:camera_raw:4.0"/>
    <category term="cpe:/a:adobe:camera_raw:4.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.2"/>
    <category term="cpe:/a:adobe:camera_raw:4.3.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.4.1"/>
    <category term="cpe:/a:adobe:camera_raw:4.5"/>
    <category term="cpe:/a:adobe:camera_raw:4.6"/>
    <category term="cpe:/a:adobe:camera_raw:5.0"/>
    <category term="cpe:/a:adobe:camera_raw:5.1"/>
    <category term="cpe:/a:adobe:camera_raw:5.2"/>
    <category term="cpe:/a:adobe:camera_raw:5.3"/>
    <category term="cpe:/a:adobe:camera_raw:5.4"/>
    <category term="cpe:/a:adobe:camera_raw:5.5"/>
    <category term="cpe:/a:adobe:camera_raw:7.2 and previous versions"/>
    <sec:identifier>CVE-2012-5679</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5525:xen: The get_page_from_gfn hypercall function in Xen 4.2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5525_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5525_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5525_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The get_page_from_gfn hypercall function in Xen 4.2 allows local PV guest OS administrators to cause a denial of service (crash) via a crafted GFN that triggers a buffer over-read.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5525_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-5525</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5515:xen: The (1) XENMEM_decrease_reservation, (2) XENMEM_pop...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5515_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5515_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5515_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) XENMEM_decrease_reservation, (2) XENMEM_populate_physmap, and (3) XENMEM_exchange hypercalls in Xen 4.2 and earlier allow local guest administrators to cause a denial of service (long loop and hang) via a crafted extent_order value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5515_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.0.2"/>
    <category term="cpe:/o:xen:xen:3.0.3"/>
    <category term="cpe:/o:xen:xen:3.0.4"/>
    <category term="cpe:/o:xen:xen:3.1.3"/>
    <category term="cpe:/o:xen:xen:3.1.4"/>
    <category term="cpe:/o:xen:xen:3.2.0"/>
    <category term="cpe:/o:xen:xen:3.2.1"/>
    <category term="cpe:/o:xen:xen:3.2.2"/>
    <category term="cpe:/o:xen:xen:3.2.3"/>
    <category term="cpe:/o:xen:xen:3.3.0"/>
    <category term="cpe:/o:xen:xen:3.3.1"/>
    <category term="cpe:/o:xen:xen:3.3.2"/>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-5515</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5514:xen: The guest_physmap_mark_populate_on_demand function ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5514_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5514_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5514_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The guest_physmap_mark_populate_on_demand function in Xen 4.2 and earlier does not properly unlock the subject GFNs when checking if they are in use, which allows local guest HVM administrators to cause a denial of service (hang) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5514_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.0.2"/>
    <category term="cpe:/o:xen:xen:3.0.3"/>
    <category term="cpe:/o:xen:xen:3.0.4"/>
    <category term="cpe:/o:xen:xen:3.1.3"/>
    <category term="cpe:/o:xen:xen:3.1.4"/>
    <category term="cpe:/o:xen:xen:3.2.0"/>
    <category term="cpe:/o:xen:xen:3.2.1"/>
    <category term="cpe:/o:xen:xen:3.2.2"/>
    <category term="cpe:/o:xen:xen:3.2.3"/>
    <category term="cpe:/o:xen:xen:3.3.0"/>
    <category term="cpe:/o:xen:xen:3.3.1"/>
    <category term="cpe:/o:xen:xen:3.3.2"/>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-5514</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5513:xen: The XENMEM_exchange handler in Xen 4.2 and earlier ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5513_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5513_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5513_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The XENMEM_exchange handler in Xen 4.2 and earlier does not properly check the memory address, which allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain privileges via unspecified vectors that overwrite memory in the hypervisor reserved range.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5513_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.0.2"/>
    <category term="cpe:/o:xen:xen:3.0.3"/>
    <category term="cpe:/o:xen:xen:3.0.4"/>
    <category term="cpe:/o:xen:xen:3.1.3"/>
    <category term="cpe:/o:xen:xen:3.1.4"/>
    <category term="cpe:/o:xen:xen:3.2.0"/>
    <category term="cpe:/o:xen:xen:3.2.1"/>
    <category term="cpe:/o:xen:xen:3.2.2"/>
    <category term="cpe:/o:xen:xen:3.2.3"/>
    <category term="cpe:/o:xen:xen:3.3.0"/>
    <category term="cpe:/o:xen:xen:3.3.1"/>
    <category term="cpe:/o:xen:xen:3.3.2"/>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-5513</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5512:xenserver: Array index error in the HVMOP_set_mem_access handl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5512_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5512_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5512_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Array index error in the HVMOP_set_mem_access handler in Xen 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) or obtain sensitive information via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5512_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:4.1.0"/>
    <sec:identifier>CVE-2012-5512</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5511:xen: Stack-based buffer overflow in the dirty video RAM ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5511_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5511_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5511_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 through 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5511_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <sec:identifier>CVE-2012-5511</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5510:xen: Xen 4.x, when downgrading the grant table version, ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5510_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5510_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5510_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 4.x, when downgrading the grant table version, does not properly remove the status page from the tracking list when freeing the page, which allows local guest OS administrators to cause a denial of service (hypervisor crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5510_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-5510</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4991:securetransport: Multiple directory traversal vulnerabilities in Axw...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4991_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4991_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4991_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and earlier allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4991_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:axway:securetransport:5.1:sp2 and previous versions"/>
    <sec:identifier>CVE-2012-4991</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3277:openvms: HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium pla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3277_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3277_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3277_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium platform and 7.3-2, 8.2, 8.3, and 8.4 on the Alpha platform does not properly implement the LOGIN and ACME_SERVER ACMELOGIN programs, which allows remote attackers to cause a denial of service via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3277_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:openvms:7.3-2:-:alpha"/>
    <category term="cpe:/o:hp:openvms:8.2:-:alpha"/>
    <category term="cpe:/o:hp:openvms:8.3-1h1:-:itanium"/>
    <category term="cpe:/o:hp:openvms:8.3:-:alpha"/>
    <category term="cpe:/o:hp:openvms:8.3:-:itanium"/>
    <category term="cpe:/o:hp:openvms:8.4:-:alpha"/>
    <category term="cpe:/o:hp:openvms:8.4:-:itanium"/>
    <sec:identifier>CVE-2012-3277</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3276:openvms: HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium pla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3276_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3276_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3276_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium platform and 7.3-2, 8.2, 8.3, and 8.4 on the Alpha platform does not properly implement the LOGIN and ACME_SERVER ACMELOGIN programs, which allows local users to cause a denial of service via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3276_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:openvms:7.3-2"/>
    <category term="cpe:/o:hp:openvms:8.3"/>
    <category term="cpe:/o:hp:openvms:8.3-1h1"/>
    <category term="cpe:/o:hp:openvms:8.4"/>
    <sec:identifier>CVE-2012-3276</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-3131:xen: Xen 4.1.1 and earlier allows local guest OS kernels...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-3131_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-3131_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-3131_AD_1.html</id>
    <published>2012-12-13T00:00:00+09:00</published>
    <updated>2012-12-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 4.1.1 and earlier allows local guest OS kernels with control of a PCI[E] device to cause a denial of service (CPU consumption and host hang) via many crafted DMA requests that are denied by the IOMMU, which triggers a livelock.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-3131_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.1.1 and previous versions"/>
    <sec:identifier>CVE-2011-3131</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005681:IBM Informix &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005681_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005681_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005681_AD_1.html</id>
    <published>2012-12-12T20:39:52+09:00</published>
    <updated>2012-12-12T20:39:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Informix には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005681_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:informix"/>
    <sec:identifier>JVNDB-2012-005681</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005680:IBM Flex System CMM &#12362;&#12424;&#12403; IMM2 &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005680_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005680_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005680_AD_1.html</id>
    <published>2012-12-12T20:39:12+09:00</published>
    <updated>2012-12-12T20:39:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Flex System Chassis Management Module (CMM) および Integrated Management Module 2 (IMM2) には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005680_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:flex_system_chassis_management_module"/>
    <category term="cpe:/a:ibm:flex_system_integrated_management_module"/>
    <sec:identifier>JVNDB-2012-005680</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005209:&#35079;&#25968;&#12398; Rockwell Automation &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005209_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005209_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005209_AD_1.html</id>
    <published>2012-12-12T16:50:38+09:00</published>
    <updated>2012-12-12T16:50:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Rockwell Automation 製品には、Static ステータスが有効でない場合、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005209_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rockwellautomation:ab_micrologix_controller"/>
    <category term="cpe:/h:rockwellautomation:plc-5_controller"/>
    <category term="cpe:/h:rockwellautomation:slc_500_controller"/>
    <sec:identifier>JVNDB-2011-005209</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005208:Post Oak AWAM Bluetooth Reader Traffic System &#12395;&#12362;&#12369;&#12427;&#12487;&#12496;&#12452;&#12473;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005208_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005208_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005208_AD_1.html</id>
    <published>2012-12-12T16:49:54+09:00</published>
    <updated>2012-12-12T16:49:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Post Oak AWAM Bluetooth Reader Traffic System は、秘密鍵に対して十分なエントロピーソースを使用しないため、デバイスを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005208_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:postoaktraffic:awam_bluetooth_reader"/>
    <sec:identifier>JVNDB-2011-005208</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005679:IBM Tivoli Monitoring &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005679_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005679_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005679_AD_1.html</id>
    <published>2012-12-12T15:11:06+09:00</published>
    <updated>2012-12-12T15:11:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Tivoli Monitoring の Service Console に含まれる組み込み HTTP サーバには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005679_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_monitoring"/>
    <sec:identifier>JVNDB-2012-005679</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5973:xcom_data_transport: CA XCOM Data Transport r11.0 and r11.5 on UNIX and ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5973_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5973_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5973_AD_1.html</id>
    <published>2012-12-10T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5973_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-::sun_solaris_x86"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:digital_unix"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:hp-ux"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:hp-ux_ia64"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:linux_aix"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:linux_aix_brixton"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:linux_pc"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:linux_zseries"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:ncr_unix_mp-ras"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:sco_openserver"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:sco_unixware"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:sun_solaris_brixton"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.0:-:sun_solaris_operating_system"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.5:-:hp-ux"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.5:-:hp-ux_ia64"/>
    <category term="cpe:/a:ca:xcom_data_transport:r11.5:-:linux_pc"/>
    <sec:identifier>CVE-2012-5973</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5678:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Adobe Flash Player before 10.3.183.48 and 11.x befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5678_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5678_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5678_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe Flash Player before 10.3.183.48 and 11.x before 11.5.502.135 on Windows, before 10.3.183.48 and 11.x before 11.5.502.136 on Mac OS X, before 10.3.183.48 and 11.x before 11.2.202.258 on Linux, before 11.1.111.29 on Android 2.x and 3.x, and before 11.1.115.34 on Android 4.x; Adobe AIR before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X; and Adobe AIR SDK before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X allow attackers to execute arbitrary code or cause a denial of ser...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5678_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.43 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.251 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player:11.5.502.110 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.24 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.27 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5678</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5677:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Integer overflow in Adobe Flash Player before 10.3....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5677_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5677_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5677_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in Adobe Flash Player before 10.3.183.48 and 11.x before 11.5.502.135 on Windows, before 10.3.183.48 and 11.x before 11.5.502.136 on Mac OS X, before 10.3.183.48 and 11.x before 11.2.202.258 on Linux, before 11.1.111.29 on Android 2.x and 3.x, and before 11.1.115.34 on Android 4.x; Adobe AIR before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X; and Adobe AIR SDK before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X allows attackers to execute arbitrary code via...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5677_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.43 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.251 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player:11.5.502.110 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.24 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.27 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5677</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5676:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5676_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5676_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5676_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.48 and 11.x before 11.5.502.135 on Windows, before 10.3.183.48 and 11.x before 11.5.502.136 on Mac OS X, before 10.3.183.48 and 11.x before 11.2.202.258 on Linux, before 11.1.111.29 on Android 2.x and 3.x, and before 11.1.115.34 on Android 4.x; Adobe AIR before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X; and Adobe AIR SDK before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X allows attackers to execute arbitrary code via ...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5676_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.5.0.600 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.43 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.251 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player:11.5.502.110 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.24 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.27 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5676</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5675:coldfusion: Adobe ColdFusion 9.0 through 9.0.2, and 10, allows ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5675_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5675_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5675_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe ColdFusion 9.0 through 9.0.2, and 10, allows local users to bypass intended shared-hosting sandbox permissions via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5675_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:coldfusion:10.0"/>
    <category term="cpe:/a:adobe:coldfusion:9.0"/>
    <category term="cpe:/a:adobe:coldfusion:9.0.1"/>
    <category term="cpe:/a:adobe:coldfusion:9.0.2"/>
    <sec:identifier>CVE-2012-5675</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5144:chrome: Google Chrome before 23.0.1271.97 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5144_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5144_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5144_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.97 does not properly perform AAC decoding, which allows remote attackers to cause a denial of service (stack memory corruption) or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5144_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5144</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5143:chrome: Integer overflow in Google Chrome before 23.0.1271....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5143_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5143_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5143_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to PPAPI image buffers.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5143_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5143</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5142:chrome: Google Chrome before 23.0.1271.97 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5142_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5142_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5142_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.97 does not properly handle history navigation, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5142_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5142</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5141:chrome: Google Chrome before 23.0.1271.97 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5141_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5141_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5141_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.97 does not properly restrict instantiation of the Chromoting client plug-in, which has unspecified impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5141_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5141</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5140:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5140_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5140_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5140_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the URL loader.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5140_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5140</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5139:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5139_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5139_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5139_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to visibility events.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5139_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94"/>
    <category term="cpe:/a:google:chrome:23.0.1271.95"/>
    <category term="cpe:/a:google:chrome:23.0.1271.96 and previous versions"/>
    <sec:identifier>CVE-2012-5139</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4977:helpbox: Layton Helpbox 4.4.0 allows remote attackers to dis...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4977_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4977_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4977_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Layton Helpbox 4.4.0 allows remote attackers to discover cleartext credentials for the login page by sniffing the network.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4977_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4977</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4976:helpbox: selectawasset.asp in Layton Helpbox 4.4.0 allows re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4976_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4976_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4976_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
selectawasset.asp in Layton Helpbox 4.4.0 allows remote attackers to discover ODBC database credentials via an element=sys_asset_id request, which is not properly handled during construction of an error page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4976_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4976</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4975:helpbox: editrequestuser.asp in Layton Helpbox 4.4.0 allows ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4975_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4975_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4975_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
editrequestuser.asp in Layton Helpbox 4.4.0 allows remote authenticated users to change arbitrary support-ticket data via a modified sys_request_id parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4975_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4975</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4974:helpbox: Layton Helpbox 4.4.0 allows remote authenticated us...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4974_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4974_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4974_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Layton Helpbox 4.4.0 allows remote authenticated users to change the login context and gain privileges via a modified (1) loggedinenduser, (2) loggedinendusername, (3) loggedinuserusergroup, (4) loggedinuser, or (5) loggedinusername cookie.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4974_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4974</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4972:helpbox: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4972_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4972_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4972_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Layton Helpbox 4.4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) sys_solution_id, (2) sys_requesttype_id, (3) sys_problem_desc, (4) sys_solution_desc, (5) sys_problemsummary, (6) usr_Action_testing, (7) usr_Escalation, or (8) usr_Additional_Resources parameter to writesolutionuser.asp or the (9) sys_solution_id parameter to deletesolution.asp.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4972_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4972</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4971:helpbox: Multiple SQL injection vulnerabilities in Layton He...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4971_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4971_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4971_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in Layton Helpbox 4.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) reqclass parameter to editrequestenduser.asp; the (2) sys_request_id parameter to editrequestuser.asp; the (3) sys_request_id parameter to enduseractions.asp; the (4) sys_request_id or (5) confirm parameter to enduserreopenrequeststatus.asp; the (6) searchsql, (7) back, or (8) status parameter to enduserrequests.asp; the (9) sys_userpwd parameter to validateendus...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4971_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:layton_technology:helpbox:4.4.0"/>
    <sec:identifier>CVE-2012-4971</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4791:exchange_server: Microsoft Exchange Server 2007 SP3 and 2010 SP1 and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4791_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4791_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4791_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Exchange Server 2007 SP3 and 2010 SP1 and SP2 allows remote authenticated users to cause a denial of service (Information Store service hang) by subscribing to a crafted RSS feed, aka &quot;RSS Feed May Cause Exchange DoS Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4791_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:exchange_server:2007:sp3"/>
    <category term="cpe:/a:microsoft:exchange_server:2010:sp1"/>
    <category term="cpe:/a:microsoft:exchange_server:2010:sp2"/>
    <sec:identifier>CVE-2012-4791</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4787:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4787_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4787_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4787_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly initialized or (2) is deleted, aka &quot;Improper Ref Counting Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4787_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:10"/>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <sec:identifier>CVE-2012-4787</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4786:windows_7, windows_server_2003, windows_server_2008, windows_vista, windows_xp: The kernel-mode drivers in Microsoft Windows XP SP2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4786_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4786_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4786_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT allow remote attackers to execute arbitrary code via a crafted TrueType Font (TTF) file, aka &quot;TrueType Font Parsing Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4786_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:-:sp1"/>
    <category term="cpe:/o:microsoft:windows_7:gold"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-4786</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4782:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4782_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4782_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4782_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka &quot;CMarkup Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4782_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:10"/>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <sec:identifier>CVE-2012-4782</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4781:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4781_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4781_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4781_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka &quot;InjectHTMLStream Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4781_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:10"/>
    <category term="cpe:/a:microsoft:internet_explorer:6"/>
    <category term="cpe:/a:microsoft:internet_explorer:7"/>
    <category term="cpe:/a:microsoft:internet_explorer:8"/>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <sec:identifier>CVE-2012-4781</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4774:windows_7, windows_server_2003, windows_server_2008, windows_vista, windows_xp: Microsoft Windows XP SP2 and SP3, Windows Server 20...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4774_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4774_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4774_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allow remote attackers to execute arbitrary code via a crafted (1) file name or (2) subfolder name that triggers use of unallocated memory as the destination of a copy operation, aka &quot;Windows Filename Parsing Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4774_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:-:sp1"/>
    <category term="cpe:/o:microsoft:windows_7:gold"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-4774</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2556:windows_rt, windows_server_2003, windows_server_2008, windows_server_2012, window...: The OpenType Font (OTF) driver in the kernel-mode d...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2556_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2556_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2556_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The OpenType Font (OTF) driver in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT allows remote attackers to execute arbitrary code via a crafted OpenType font file, aka &quot;OpenType Font Parsing Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2556_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_rt:-"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-2556</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2549:windows_server_2008, windows_server_2012: The IP-HTTPS server in Windows Server 2008 R2 and R...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2549_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2549_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2549_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IP-HTTPS server in Windows Server 2008 R2 and R2 SP1 and Server 2012 does not properly validate certificates, which allows remote attackers to bypass intended access restrictions via a revoked certificate, aka &quot;Revoked Certificate Bypass Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2549_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_server_2008:r2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <sec:identifier>CVE-2012-2549</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2539:office_compatibility_pack, office_web_apps, office_word_viewer: Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2539_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2539_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2539_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; and Office Web Apps 2010 SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted RTF data, aka &quot;Word RTF 'listoverridecount' Remote Code Execution Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2539_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp2"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp3"/>
    <category term="cpe:/a:microsoft:office_web_apps:2010:sp1"/>
    <category term="cpe:/a:microsoft:office_word_viewer"/>
    <category term="cpe:/a:microsoft:word:2003:sp3"/>
    <category term="cpe:/a:microsoft:word:2007:sp2"/>
    <category term="cpe:/a:microsoft:word:2007:sp3"/>
    <category term="cpe:/a:microsoft:word:2010:sp1"/>
    <sec:identifier>CVE-2012-2539</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1537:directx, windows_server_2003, windows_xp, windows_server_2008, windows_vista: Heap-based buffer overflow in DirectPlay in DirectX...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1537_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1537_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1537_AD_1.html</id>
    <published>2012-12-12T00:00:00+09:00</published>
    <updated>2012-12-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in DirectPlay in DirectX 9.0 through 11.1 in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, and Windows Server 2012 allows remote attackers to execute arbitrary code via a crafted Office document, aka &quot;DirectPlay Heap Overflow Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1537_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:directx:10.0"/>
    <category term="cpe:/a:microsoft:directx:10.1:-"/>
    <category term="cpe:/a:microsoft:directx:11.0"/>
    <category term="cpe:/a:microsoft:directx:11.1"/>
    <category term="cpe:/a:microsoft:directx:9.0"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:-"/>
    <category term="cpe:/o:microsoft:windows_server_2008:-:sp1"/>
    <category term="cpe:/o:microsoft:windows_server_2008:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1"/>
    <category term="cpe:/o:microsoft:windows_vista:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-1537</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6313:1.1.2, 1.1.3: simple-gmail-login.php in the Simple Gmail Login pl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6313_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6313_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6313_AD_1.html</id>
    <published>2012-12-11T00:00:00+09:00</published>
    <updated>2012-12-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
simple-gmail-login.php in the Simple Gmail Login plugin before 1.1.4 for WordPress allows remote attackers to obtain sensitive information via a request that lacks a timezone, leading to disclosure of the installation path in a stack trace.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6313_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simple_gmail_login:1.1.2"/>
    <category term="cpe:/a:simple_gmail_login:1.1.3 and previous versions"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-6313</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6312:uk-cookie: Cross-site scripting (XSS) vulnerability in the Vid...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6312_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6312_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6312_AD_1.html</id>
    <published>2012-12-11T00:00:00+09:00</published>
    <updated>2012-12-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Video Lead Form plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter in a video-lead-form action to wp-admin/admin.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6312_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:video-lead-form:uk-cookie:-"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-6312</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5956:assetexplorer: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5956_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5956_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5956_AD_1.html</id>
    <published>2012-12-11T00:00:00+09:00</published>
    <updated>2012-12-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine AssetExplorer 5.6 before service pack 5614 allow remote attackers to inject arbitrary web script or HTML via fields in XML asset data to discoveryServlet/WsDiscoveryServlet, as demonstrated by the DocRoot/Computer_Information/output element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5956_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:manageengine:assetexplorer:5.6:5613 and previous versions"/>
    <sec:identifier>CVE-2012-5956</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4349:network_access_control: Unspecified vulnerability in Symantec Network Acces...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4349_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4349_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4349_AD_1.html</id>
    <published>2012-12-11T00:00:00+09:00</published>
    <updated>2012-12-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Symantec Network Access Control allows local users to gain privileges or cause a denial of service via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4349_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:network_access_control:-"/>
    <sec:identifier>CVE-2012-4349</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6301:android: The Browser application in Android 4.0.3 allows rem...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6301_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6301_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6301_AD_1.html</id>
    <published>2012-12-10T00:00:00+09:00</published>
    <updated>2012-12-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Browser application in Android 4.0.3 allows remote attackers to cause a denial of service (application crash) via a crafted market: URI in the SRC attribute of an IFRAME element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6301_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android:4.0.3"/>
    <sec:identifier>CVE-2012-6301</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4857:informix_dynamic_server: Buffer overflow in IBM Informix 11.50 through 11.50...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4857_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4857_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4857_AD_1.html</id>
    <published>2012-12-08T00:00:00+09:00</published>
    <updated>2012-12-10T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in IBM Informix 11.50 through 11.50.xC9W2 and 11.70 before 11.70.xC7 allows remote authenticated users to execute arbitrary code via a crafted SQL statement.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4857_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc3"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc3w1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc4"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc4w1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc5"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc5w2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc5w3"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc5w4"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc6"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc6w1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc6w2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc6w3"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc6w4"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc7"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc7w1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc7w2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc7w3"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc7w4"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc8"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc8w1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc8w2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc8w3"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc8w4"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.50.xc9"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.70.xc1"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.70.xc2"/>
    <category term="cpe:/a:ibm:informix_dynamic_server:11.70.xc3"/>
    <sec:identifier>CVE-2012-4857</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4838:flex_system: IBM Flex System Chassis Management Module (CMM) and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4838_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4838_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4838_AD_1.html</id>
    <published>2012-12-08T00:00:00+09:00</published>
    <updated>2012-12-10T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Flex System Chassis Management Module (CMM) and Integrated Management Module 2 (IMM2) allow local users to obtain sensitive information about (1) local accounts, (2) SSH private keys, (3) SSL/TLS private keys, (4) SNMPv3 communities, and (5) LDAP credentials by leveraging unspecified side effects of service or maintenance activity.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4838_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:flex_system:chassis_management_module"/>
    <category term="cpe:/a:ibm:flex_system:integrated_management_module:2"/>
    <sec:identifier>CVE-2012-4838</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4690:ab_micrologix_controller, plc-5_controller, slc_500_controller: Rockwell Automation Allen-Bradley MicroLogix contro...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4690_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4690_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4690_AD_1.html</id>
    <published>2012-12-08T00:00:00+09:00</published>
    <updated>2012-12-10T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Rockwell Automation Allen-Bradley MicroLogix controller 1100, 1200, 1400, and 1500; SLC 500 controller platform; and PLC-5 controller platform, when Static status is not enabled, allow remote attackers to cause a denial of service via messages that trigger modification of status bits.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4690_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:rockwellautomation:ab_micrologix_controller:1100"/>
    <category term="cpe:/h:rockwellautomation:ab_micrologix_controller:1200"/>
    <category term="cpe:/h:rockwellautomation:ab_micrologix_controller:1400"/>
    <category term="cpe:/h:rockwellautomation:ab_micrologix_controller:1500"/>
    <category term="cpe:/h:rockwellautomation:plc-5_controller"/>
    <category term="cpe:/h:rockwellautomation:slc_500_controller"/>
    <sec:identifier>CVE-2012-4690</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4687:awam_bluetooth_reader: Post Oak AWAM Bluetooth Reader Traffic System does ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4687_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4687_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4687_AD_1.html</id>
    <published>2012-12-08T00:00:00+09:00</published>
    <updated>2012-12-10T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Post Oak AWAM Bluetooth Reader Traffic System does not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof a device by predicting a key value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4687_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:postoaktraffic:awam_bluetooth_reader:-"/>
    <sec:identifier>CVE-2012-4687</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3297:tivoli_monitoring: Cross-site scripting (XSS) vulnerability in the emb...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3297_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3297_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3297_AD_1.html</id>
    <published>2012-12-08T00:00:00+09:00</published>
    <updated>2012-12-10T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the embedded HTTP server in the Service Console in IBM Tivoli Monitoring 6.2.2 before 6.2.2-TIV-ITM-FP0009 and 6.3.2 before 6.2.3-TIV-ITM-FP0001 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3297_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_monitoring:6.2.2"/>
    <category term="cpe:/a:ibm:tivoli_monitoring:6.2.3"/>
    <sec:identifier>CVE-2012-3297</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005678:ManageEngine AssetExplorer &#12395;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005678_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005678_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005678_AD_1.html</id>
    <published>2012-12-07T16:54:39+09:00</published>
    <updated>2012-12-07T16:54:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ManageEngine AssetExplorer には、クロスサイトスクリプティングの脆弱性が存在します。  Zoho Corporation Pvt. Ltd. が提供する ManageEngine AssetExplorer には、XML ファイルの処理に問題があり、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005678_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:zohocorp:manageengine_assetexplorer"/>
    <sec:identifier>JVNDB-2012-005678</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005677:HP Network Node Manager i &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005677_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005677_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005677_AD_1.html</id>
    <published>2012-12-07T15:15:48+09:00</published>
    <updated>2012-12-07T15:15:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Network Node Manager i (NNMi) には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005677_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:network_node_manager_i"/>
    <sec:identifier>JVNDB-2012-005677</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005676:HP Intelligent Management Center &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005676_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005676_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005676_AD_1.html</id>
    <published>2012-12-07T15:15:08+09:00</published>
    <updated>2012-12-07T15:15:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Intelligent Management Center (IMC) の User Access Manager (UAM) コンポーネント内の uam.exe には、ログデータに関する処理に不備があるため、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005676_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:intelligent_management_center"/>
    <sec:identifier>JVNDB-2012-005676</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005675:HP LaserJet Pro &#12362;&#12424;&#12403; LaserJet &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005675_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005675_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005675_AD_1.html</id>
    <published>2012-12-07T15:11:36+09:00</published>
    <updated>2012-12-07T15:11:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP LaserJet Pro 400 MFP M425 および LaserJet 400 M401 には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005675_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:hp:laserjet_pro_mfp_m401"/>
    <category term="cpe:/h:hp:laserjet_pro_mfp_m425"/>
    <sec:identifier>JVNDB-2012-005675</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005674:HP Color LaserJet &#12362;&#12424;&#12403; LaserJet &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005674_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005674_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005674_AD_1.html</id>
    <published>2012-12-07T15:10:16+09:00</published>
    <updated>2012-12-07T15:10:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Color LaserJet および LaserJet には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005674_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:hp:color_laserjet_cm3530"/>
    <category term="cpe:/h:hp:color_laserjet_cm60xx"/>
    <category term="cpe:/h:hp:color_laserjet_cp3525"/>
    <category term="cpe:/h:hp:color_laserjet_cp4xxx"/>
    <category term="cpe:/h:hp:color_laserjet_cp6015"/>
    <category term="cpe:/h:hp:laserjet_p3015"/>
    <category term="cpe:/h:hp:laserjet_p4xxx"/>
    <sec:identifier>JVNDB-2012-005674</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005673:VMware SpringSource Spring Security &#12395;&#12362;&#12369;&#12427;&#26377;&#21177;&#12394;&#12518;&#12540;&#12470;&#21517;&#12434;&#21015;&#25369;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005673_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005673_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005673_AD_1.html</id>
    <published>2012-12-07T15:09:11+09:00</published>
    <updated>2012-12-07T15:09:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware SpringSource Spring Security の DaoAuthenticationProvider は、ユーザが存在しない場合にパスワードのチェック処理を行わないため、応答時間の違いによって、 有効なユーザ名を列挙される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005673_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security"/>
    <sec:identifier>JVNDB-2012-005673</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005207:VMware SpringSource Spring Security &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005207_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005207_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005207_AD_1.html</id>
    <published>2012-12-07T15:07:15+09:00</published>
    <updated>2012-12-07T15:07:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware SpringSource Spring Security のログアウト機能には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005207_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security"/>
    <sec:identifier>JVNDB-2011-005207</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005206:VMware SpringSource Spring Security &#12398; RunAsManager &#12513;&#12459;&#12491;&#12474;&#12512;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005206_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005206_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005206_AD_1.html</id>
    <published>2012-12-07T15:05:20+09:00</published>
    <updated>2012-12-07T15:05:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware SpringSource Spring Security の RunAsManager メカニズムは、Authentication オブジェクトを共有のセキュリティコンテキスト内に保存するため、競合状態により、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005206_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security"/>
    <sec:identifier>JVNDB-2011-005206</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005205:VMware SpringSource Spring Framework &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005205_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005205_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005205_AD_1.html</id>
    <published>2012-12-07T14:59:01+09:00</published>
    <updated>2012-12-07T14:59:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware SpringSource Spring Framework は、式言語 (Expression Language、EL) をコンテナがサポートしている場合、タグ内の EL 式を 2 回値を求めるため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005205_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_framework"/>
    <sec:identifier>JVNDB-2011-005205</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005204:SpringSource Hyperic HQ &#12398; Sybase &#12487;&#12540;&#12479;&#12505;&#12540;&#12473;&#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12487;&#12540;&#12479;&#12505;&#12540;&#12473;&#12398;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005204_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005204_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005204_AD_1.html</id>
    <published>2012-12-07T14:47:25+09:00</published>
    <updated>2012-12-07T14:47:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SpringSource Hyperic HQ の Sybase データベースプラグイン内の monitor perl スクリプトには、データベースのパスワードを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005204_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:springsource:hyperic_hq"/>
    <sec:identifier>JVNDB-2011-005204</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005672:ISC BIND &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005672_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005672_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005672_AD_1.html</id>
    <published>2012-12-07T10:56:06+09:00</published>
    <updated>2012-12-07T10:56:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ISC BIND には、DNS64 が有効になっている場合、サービス運用妨害 (表明違反および Daemon Exit) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005672_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:bind"/>
    <sec:identifier>JVNDB-2012-005672</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005671:Forescout CounterACT NAC &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;ARP &#12509;&#12452;&#12474;&#12491;&#12531;&#12464;&#25915;&#25731;&#12364;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005671_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005671_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005671_AD_1.html</id>
    <published>2012-12-06T16:27:44+09:00</published>
    <updated>2012-12-06T16:27:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Forescout CounterACT NAC デバイスは、認知していないクライアントからの ARP と ICMP トラフィックをブロックしないため、ARP ポイズニング攻撃が実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005671_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract"/>
    <sec:identifier>JVNDB-2012-005671</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005670:Forescout CounterACT NAC &#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005670_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005670_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005670_AD_1.html</id>
    <published>2012-12-06T16:27:05+09:00</published>
    <updated>2012-12-06T16:27:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Forescout CounterACT NAC デバイスには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005670_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract"/>
    <sec:identifier>JVNDB-2012-005670</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005669:Forescout CounterACT NAC &#12487;&#12496;&#12452;&#12473;&#12398; assets/login &#12395;&#12362;&#12369;&#12427;&#12458;&#12540;&#12503;&#12531;&#12522;&#12480;&#12452;&#12524;&#12463;&#12488;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005669_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005669_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005669_AD_1.html</id>
    <published>2012-12-06T16:26:30+09:00</published>
    <updated>2012-12-06T16:26:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Forescout CounterACT NAC デバイスの assets/login には、オープンリダイレクトの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005669_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract"/>
    <sec:identifier>JVNDB-2012-005669</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005668:EMC RSA NetWitness Informer &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12522;&#12483;&#12463;&#12472;&#12515;&#12483;&#12461;&#12531;&#12464;&#25915;&#25731;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005668_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005668_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005668_AD_1.html</id>
    <published>2012-12-06T16:26:03+09:00</published>
    <updated>2012-12-06T16:26:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA NetWitness Informer の Web インタフェースには、クリックジャッキング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005668_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_netwitness_informer"/>
    <sec:identifier>JVNDB-2012-005668</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005667:EMC RSA NetWitness Informer &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005667_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005667_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005667_AD_1.html</id>
    <published>2012-12-06T16:25:20+09:00</published>
    <updated>2012-12-06T16:25:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA NetWitness Informer には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005667_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_netwitness_informer"/>
    <sec:identifier>JVNDB-2012-005667</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005666:Symantec Messaging Gateway &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005666_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005666_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005666_AD_1.html</id>
    <published>2012-12-06T16:24:44+09:00</published>
    <updated>2012-12-06T16:24:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec Messaging Gateway には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005666_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:messaging_gateway"/>
    <sec:identifier>JVNDB-2012-005666</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005665:IBM Rational Developer for System z &#12398; Host Connect &#12456;&#12511;&#12517;&#12524;&#12540;&#12479;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005665_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005665_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005665_AD_1.html</id>
    <published>2012-12-06T16:24:08+09:00</published>
    <updated>2012-12-06T16:24:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Rational Developer for System z の Host Connect エミュレータは、SSL 証明書のパスワードを適切に保存しないため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005665_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_developer_for_system_z"/>
    <sec:identifier>JVNDB-2012-005665</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005664:IBM WebSphere Message Broker &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005664_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005664_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005664_AD_1.html</id>
    <published>2012-12-06T16:23:31+09:00</published>
    <updated>2012-12-06T16:23:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Message Broker は、特定の Java Runtime Environment (JRE) ファイルのアンインストーラに不適切な所有権を持たせるため、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005664_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_message_broker"/>
    <sec:identifier>JVNDB-2012-005664</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005663:freeFTPd &#12398; freeFTPd.exe &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005663_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005663_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005663_AD_1.html</id>
    <published>2012-12-06T15:45:52+09:00</published>
    <updated>2012-12-06T15:45:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
freeFTPd の freeFTPd.exe には、認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005663_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:freeftpd:freeftpd"/>
    <sec:identifier>JVNDB-2012-005663</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005662:freeSSHd &#12398; freeSSHd.exe &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005662_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005662_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005662_AD_1.html</id>
    <published>2012-12-06T15:44:03+09:00</published>
    <updated>2012-12-06T15:44:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
freeSSHd の freeSSHd.exe には、認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005662_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:freesshd:freesshd"/>
    <sec:identifier>JVNDB-2012-005662</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005661:SSH Tectia Server &#12398; SSH USERAUTH CHANGE REQUEST &#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005661_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005661_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005661_AD_1.html</id>
    <published>2012-12-06T15:33:57+09:00</published>
    <updated>2012-12-06T15:33:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
UNIX および Linux 上で稼働する SSH Tectia Server の SSH USERAUTH CHANGE REQUEST 機能には、古い形式のパスワード認証が有効になっている場合、認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005661_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ssh:tectia_server"/>
    <sec:identifier>JVNDB-2012-005661</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005660:Wireshark &#12398; RTCP &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005660_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005660_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005660_AD_1.html</id>
    <published>2012-12-06T14:42:55+09:00</published>
    <updated>2012-12-06T14:42:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の RTCP 解析機能の epan/dissectors/packet-rtcp.c 内の dissect_rtcp_app 関数には、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005660_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005660</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005659:Wireshark &#12398; WTP &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12362;&#12424;&#12403;&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005659_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005659_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005659_AD_1.html</id>
    <published>2012-12-06T14:42:28+09:00</published>
    <updated>2012-12-06T14:42:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の WTP 解析機能の epan/dissectors/packet-wtp.c 内の dissect_wtp_common 関数は、特定の length フィールドに不適切なデータ型を使用するため、サービス運用妨害 (整数オーバーフローおよび無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005659_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005659</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005658:Wireshark &#12398; iSCSI &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005658_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005658_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005658_AD_1.html</id>
    <published>2012-12-06T14:41:58+09:00</published>
    <updated>2012-12-06T14:41:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の iSCSI 解析機能の epan/dissectors/packet-iscsi.c 内の dissect_iscsi_pdu 関数には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005658_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005658</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005657:Wireshark &#12398; ISAKMP &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005657_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005657_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005657_AD_1.html</id>
    <published>2012-12-06T14:41:30+09:00</published>
    <updated>2012-12-06T14:41:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の ISAKMP 解析機能の epan/dissectors/packet-isakmp.c 内の dissect_isakmp 関数は、IKEv2 の復号パラメータを決定するために不適切なデータ構造を使用するため、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005657_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005657</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005656:Wireshark &#12398; ICMPv6 &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005656_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005656_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005656_AD_1.html</id>
    <published>2012-12-06T14:40:45+09:00</published>
    <updated>2012-12-06T14:40:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の ICMPv6 解析機能の epan/dissectors/packet-icmpv6.c 内の dissect_icmpv6関数には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005656_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005656</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005655:Wireshark &#12398; EIGRP &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12362;&#12424;&#12403;&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005655_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005655_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005655_AD_1.html</id>
    <published>2012-12-06T14:40:14+09:00</published>
    <updated>2012-12-06T14:40:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の EIGRP 解析機能の epan/dissectors/packet-eigrp.c 内の dissect_eigrp_metric_comm 関数は、特定のオフセット値に対して不適切なデータ型を使用するため、サービス運用妨害 (整数オーバーフローおよび無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005655_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005655</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005654:Wireshark &#12398; SCTP &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005654_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005654_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005654_AD_1.html</id>
    <published>2012-12-06T14:39:24+09:00</published>
    <updated>2012-12-06T14:39:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の SCTP 解析機能の epan/dissectors/packet-sctp.c 内の dissect_sack_chunk 関数には、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005654_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005654</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005653:Wireshark &#12398; 3GPP2 A1 &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005653_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005653_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005653_AD_1.html</id>
    <published>2012-12-06T14:26:59+09:00</published>
    <updated>2012-12-06T14:26:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の 3GPP2 A1 解析機能の epan/dissectors/packet-3g-a11.c には、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005653_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005653</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005652:Wireshark &#12398; sFlow &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005652_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005652_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005652_AD_1.html</id>
    <published>2012-12-06T14:26:28+09:00</published>
    <updated>2012-12-06T14:26:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の sFlow 解析機能の epan/dissectors/packet-sflow.c 内の dissect_sflow_245_address_type 関数は、無効な IP アドレスタイプのパケットに対して、長さの計算を適切に行わないため、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005652_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005652</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005651:Wireshark &#12398; USB &#35299;&#26512;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005651_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005651_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005651_AD_1.html</id>
    <published>2012-12-06T14:25:05+09:00</published>
    <updated>2012-12-06T14:25:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark の USB 解析機能の epan/dissectors/packet-usb.c は、length フィールドを使用してオフセット値を計算するため、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005651_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005651</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005650:Wireshark &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#12507;&#12473;&#12488;&#21517;&#12398;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005650_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005650_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005650_AD_1.html</id>
    <published>2012-12-06T14:21:11+09:00</published>
    <updated>2012-12-06T14:21:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wireshark には、重要なホスト名の情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005650_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark"/>
    <sec:identifier>JVNDB-2012-005650</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000107:KENT-WEB &#35069; ACCESS REPORT &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000107_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000107_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000107_AD_1.html</id>
    <published>2012-12-06T12:00:59+09:00</published>
    <updated>2012-12-06T12:00:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KENT-WEB が提供する ACCESS REPORT には、クロスサイトスクリプティングの脆弱性が存在します。  KENT-WEB が提供する ACCESS REPORT は、ウェブページのアクセスログ解析を行うためのソフトウェアです。ACCESS REPORT には、ウェブページへの記述タグの埋め込み方法に起因する、クロスサイトスクリプティングの脆弱性が存在します。  なお、本脆弱性は JVN#68830017 とは異なる問題です。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: Masahiro YAMADA 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000107_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kent-web:access_report"/>
    <sec:identifier>JVNDB-2012-000107</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000106:KENT-WEB &#35069; ACCESS REPORT &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000106_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000106_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000106_AD_1.html</id>
    <published>2012-12-06T12:00:26+09:00</published>
    <updated>2012-12-06T12:00:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KENT-WEB が提供する ACCESS REPORT には、クロスサイトスクリプティングの脆弱性が存在します。  KENT-WEB が提供する ACCESS REPORT は、ウェブページのアクセスログ解析を行うためのソフトウェアです。ACCESS REPORT には、アクセスログの処理に問題があり、クロスサイトスクリプティングの脆弱性が存在します。  なお、本脆弱性は JVN#23563149 とは異なる問題です。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 株式会社キノトロープ 富永 冴樹 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000106_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kent-web:access_report"/>
    <sec:identifier>JVNDB-2012-000106</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5688:bind: ISC BIND 9.8.x before 9.8.4-P1 and 9.9.x before 9.9...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5688_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5688_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5688_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ISC BIND 9.8.x before 9.8.4-P1 and 9.9.x before 9.9.2-P1, when DNS64 is enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5688_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:bind:9.8.0"/>
    <category term="cpe:/a:isc:bind:9.8.1"/>
    <category term="cpe:/a:isc:bind:9.8.2:b1"/>
    <category term="cpe:/a:isc:bind:9.8.3 and previous versions"/>
    <category term="cpe:/a:isc:bind:9.9.0"/>
    <category term="cpe:/a:isc:bind:9.9.1 and previous versions"/>
    <sec:identifier>CVE-2012-5688</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5176:access_report: Cross-site scripting (XSS) vulnerability in KENT-WE...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5176_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5176_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5176_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 5.02 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to tag embedding.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5176_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kent-web:access_report:5.02 and previous versions"/>
    <sec:identifier>CVE-2012-5176</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5175:access_report: Cross-site scripting (XSS) vulnerability in KENT-WE...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5175_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5175_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5175_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to access-log data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5175_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kent-web:access_report:4.2 and previous versions"/>
    <sec:identifier>CVE-2012-5175</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3275:network_node_manager_i: Unspecified vulnerability in HP Network Node Manage...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3275_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3275_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3275_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.1x and 9.20 allows remote attackers to execute arbitrary code via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3275_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:network_node_manager_i:9.10"/>
    <category term="cpe:/a:hp:network_node_manager_i:9.20"/>
    <sec:identifier>CVE-2012-3275</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3274:intelligent_management_center: Stack-based buffer overflow in uam.exe in the User ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3274_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3274_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3274_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in uam.exe in the User Access Manager (UAM) component in HP Intelligent Management Center (IMC) before 5.1 E0101P01 allows remote attackers to execute arbitrary code via vectors related to log data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3274_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:intelligent_management_center:5.0"/>
    <category term="cpe:/a:hp:intelligent_management_center:5.0:e0101"/>
    <category term="cpe:/a:hp:intelligent_management_center:5.0:e0101h03"/>
    <category term="cpe:/a:hp:intelligent_management_center:5.0:e0101h04"/>
    <category term="cpe:/a:hp:intelligent_management_center:5.0:e0101l01"/>
    <category term="cpe:/a:hp:intelligent_management_center:5.0:e0101l02 and previous versions"/>
    <sec:identifier>CVE-2012-3274</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3273:laserjet_pro_mfp_m401, laserjet_pro_mfp_m425: Multiple unspecified vulnerabilities on the HP Lase...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3273_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3273_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3273_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unspecified vulnerabilities on the HP LaserJet Pro 400 MFP M425 with firmware 20120625 and LaserJet 400 M401 with firmware 20120621 allow remote attackers to obtain sensitive information via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3273_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:hp:laserjet_pro_mfp_m401:20120621"/>
    <category term="cpe:/h:hp:laserjet_pro_mfp_m425:20120625"/>
    <sec:identifier>CVE-2012-3273</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3272:color_laserjet_cm3530, color_laserjet_cm60xx, color_laserjet_cp3525, color_laserj...: Cross-site scripting (XSS) vulnerability on the HP ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3272_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3272_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3272_AD_1.html</id>
    <published>2012-12-06T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability on the HP Color LaserJet CM3530 with firmware before 53.190.9, Color LaserJet CM60xx with firmware before 52.210.9, Color LaserJet CP3525 with firmware before 06.140.3 18, Color LaserJet CP4xxx with firmware before 07.120.6, Color LaserJet CP6015 with firmware before 04.160.3, LaserJet P3015 with firmware before 07.140.3, and LaserJet P4xxx with firmware before 04.170.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vect...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3272_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:hp:color_laserjet_cm3530:53.190.8 and previous versions"/>
    <category term="cpe:/h:hp:color_laserjet_cm60xx:53.190.8 and previous versions"/>
    <category term="cpe:/h:hp:color_laserjet_cp3525:06.140.3.17 and previous versions"/>
    <category term="cpe:/h:hp:color_laserjet_cp4xxx:07.120.5 and previous versions"/>
    <category term="cpe:/h:hp:color_laserjet_cp6015:04.160.2 and previous versions"/>
    <category term="cpe:/h:hp:laserjet_p3015:07.140.2 and previous versions"/>
    <category term="cpe:/h:hp:laserjet_p4xxx:04.170.2 and previous versions"/>
    <sec:identifier>CVE-2012-3272</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5055:springsource_spring_security: DaoAuthenticationProvider in VMware SpringSource Sp...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5055_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5055_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5055_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
DaoAuthenticationProvider in VMware SpringSource Spring Security before 2.0.8, 3.0.x before 3.0.8, and 3.1.x before 3.1.3 does not check the password if the user is not found, which makes the response delay shorter and might allow remote attackers to enumerate valid usernames via a series of login requests.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5055_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.5"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.6 and previous versions"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.5 and previous versions"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.1.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.1.2 and previous versions"/>
    <sec:identifier>CVE-2012-5055</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2732:springsource_spring_security: CRLF injection vulnerability in the logout function...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2732_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2732_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2732_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the spring-security-redirect parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2732_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.5"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.6 and previous versions"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.5 and previous versions"/>
    <sec:identifier>CVE-2011-2732</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2731:springsource_spring_security: Race condition in the RunAsManager mechanism in VMw...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2731_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2731_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2731_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Race condition in the RunAsManager mechanism in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 stores the Authentication object in the shared security context, which allows attackers to gain privileges via a crafted thread.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2731_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.5"/>
    <category term="cpe:/a:vmware:springsource_spring_security:2.0.6 and previous versions"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.0"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.1"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.2"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.3"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.4"/>
    <category term="cpe:/a:vmware:springsource_spring_security:3.0.5 and previous versions"/>
    <sec:identifier>CVE-2011-2731</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2730:spring_framework: VMware SpringSource Spring Framework before 2.5.6.S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2730_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2730_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2730_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
VMware SpringSource Spring Framework before 2.5.6.SEC03, 2.5.7.SR023, and 3.x before 3.0.6, when a container supports Expression Language (EL), evaluates EL expressions in tags twice, which allows remote attackers to obtain sensitive information via a (1) name attribute in a (a) spring:hasBindErrors tag; (2) path attribute in a (b) spring:bind or (c) spring:nestedpath tag; (3) arguments, (4) code, (5) text, (6) var, (7) scope, or (8) message attribute in a (d) spring:message or (e) spring:the...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2730_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:springsource:spring_framework:2.5.0"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.0:rc1"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.0:rc2"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.1"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.2"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.3"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.4"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.5"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.6"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.7"/>
    <category term="cpe:/a:springsource:spring_framework:2.5.7_sr01 and previous versions"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.0"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.1"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.2"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.3"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.4"/>
    <category term="cpe:/a:springsource:spring_framework:3.0.5 and previous versions"/>
    <sec:identifier>CVE-2011-2730</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2009-2899:hyperic_hq: The monitor perl script in the Sybase database plug...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-2899_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-2899_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-2899_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3 allows local users to obtain the database password by listing the process and its arguments.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-2899_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:springsource:hyperic_hq:4.2 and previous versions"/>
    <category term="cpe:/a:springsource:hyperic_hq:4.2:beta_1"/>
    <sec:identifier>CVE-2009-2899</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005649:Drupal &#29992; OM Maximenu &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005649_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005649_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005649_AD_1.html</id>
    <published>2012-12-05T17:47:36+09:00</published>
    <updated>2012-12-05T17:47:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 OM Maximenu モジュールは、&quot;Title has PHP&quot; オプションが有効になっている場合、任意の PHP コードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-5553 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005649_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:daniel_honrade:om_maximenu"/>
    <sec:identifier>JVNDB-2012-005649</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005648:CMS Made Simple &#12398; lib/filemanager/imagemanager/images.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005648_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005648_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005648_AD_1.html</id>
    <published>2012-12-05T17:46:16+09:00</published>
    <updated>2012-12-05T17:46:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CMS Made Simple (CMSMS) の lib/filemanager/imagemanager/images.php には、ディレクトリトラバーサルの脆弱性が存在します。  本脆弱性は、CVE-2012-5450 の CSRF の脆弱性と合わせて利用することで、任意のファイルを削除することが可能です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005648_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple"/>
    <sec:identifier>JVNDB-2012-005648</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005647:Drupal &#29992; Basic webmail &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005647_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005647_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005647_AD_1.html</id>
    <published>2012-12-05T17:45:11+09:00</published>
    <updated>2012-12-05T17:45:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Basic webmail モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005647_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jason_flatt:basic_webmail"/>
    <sec:identifier>JVNDB-2012-005647</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005646:Drupal &#29992; Chaos tool suite &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005646_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005646_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005646_AD_1.html</id>
    <published>2012-12-05T17:44:25+09:00</published>
    <updated>2012-12-05T17:44:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Chaos tool suite (ctools) モジュールの Page Manager Node View Task には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005646_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:angrydonuts:ctools"/>
    <sec:identifier>JVNDB-2012-005646</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005645:Drupal &#29992; User Read-Only &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005645_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005645_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005645_AD_1.html</id>
    <published>2012-12-05T17:43:45+09:00</published>
    <updated>2012-12-05T17:43:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 User Read-Only モジュールは、サイトおよびいくつかの不特定の設定に複数の 3 つ以上の役割がある場合、役割を適切に割り当てられないため、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005645_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:user_read-only_project:user_readonly"/>
    <sec:identifier>JVNDB-2012-005645</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005644:Drupal &#29992; RESTful Web Services &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005644_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005644_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005644_AD_1.html</id>
    <published>2012-12-05T17:40:45+09:00</published>
    <updated>2012-12-05T17:40:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 RESTful Web Services (RESTWS) モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005644_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:restful_web_services_project:restws"/>
    <sec:identifier>JVNDB-2012-005644</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005643:Webform CiviCRM Integration &#12514;&#12472;&#12517;&#12540;&#12523;&#12398;&#12487;&#12501;&#12457;&#12523;&#12488;&#35373;&#23450;&#12395;&#12362;&#12369;&#12427;&#36899;&#32097;&#20808;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005643_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005643_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005643_AD_1.html</id>
    <published>2012-12-05T17:40:13+09:00</published>
    <updated>2012-12-05T17:40:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Webform CiviCRM Integration モジュールのデフォルト設定は、&quot;Enforce Permissions (アクセス権の適用)&quot; が無効になっている場合、連絡先情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005643_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:coleman_watts:webform_civicrm"/>
    <sec:identifier>JVNDB-2012-005643</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005642:Drupal &#29992; OM Maximenu &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005642_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005642_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005642_AD_1.html</id>
    <published>2012-12-05T17:39:18+09:00</published>
    <updated>2012-12-05T17:39:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 OM Maximenu モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005642_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:daniel_honrade:om_maximenu"/>
    <sec:identifier>JVNDB-2012-005642</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005641:Drupal &#29992; Time Spent &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005641_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005641_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005641_AD_1.html</id>
    <published>2012-12-05T17:33:33+09:00</published>
    <updated>2012-12-05T17:33:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Time Spent モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005641_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent"/>
    <sec:identifier>JVNDB-2012-005641</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005640:Drupal &#29992; Time Spent &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005640_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005640_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005640_AD_1.html</id>
    <published>2012-12-05T17:28:48+09:00</published>
    <updated>2012-12-05T17:28:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Time Spent モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005640_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent"/>
    <sec:identifier>JVNDB-2012-005640</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005639:Drupal &#29992; Search API &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005639_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005639_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005639_AD_1.html</id>
    <published>2012-12-05T17:28:16+09:00</published>
    <updated>2012-12-05T17:28:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Search API モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005639_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:thomas_seidl:search_api"/>
    <sec:identifier>JVNDB-2012-005639</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005638:Drupal &#29992; ShareThis &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005638_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005638_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005638_AD_1.html</id>
    <published>2012-12-05T17:26:29+09:00</published>
    <updated>2012-12-05T17:26:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 ShareThis モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005638_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rob_loach:sharethis"/>
    <sec:identifier>JVNDB-2012-005638</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005637:Drupal &#29992; Mandrill &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12527;&#12540;&#12489;&#12398;&#12522;&#12475;&#12483;&#12488;&#12522;&#12531;&#12463;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005637_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005637_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005637_AD_1.html</id>
    <published>2012-12-05T16:57:17+09:00</published>
    <updated>2012-12-05T16:57:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Mandrill モジュールには、パスワードのリセットリンクを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005637_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:thinkshout:mandrill"/>
    <sec:identifier>JVNDB-2012-005637</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005636:Drupal &#29992; Feeds &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12494;&#12540;&#12489;&#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005636_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005636_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005636_AD_1.html</id>
    <published>2012-12-05T16:56:30+09:00</published>
    <updated>2012-12-05T16:56:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Feeds モジュールは、フィールドがノードの作成者にマップされている場合、パーミッションを適切にチェックしないため、任意のノードを作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005636_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:feeds_project:feeds"/>
    <sec:identifier>JVNDB-2012-005636</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005635:Drupal &#29992; Commerce Extra Panes &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005635_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005635_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005635_AD_1.html</id>
    <published>2012-12-05T16:55:33+09:00</published>
    <updated>2012-12-05T16:55:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Commerce Extra Panes モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005635_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:pedro_cambra:commerce_extra_panes"/>
    <sec:identifier>JVNDB-2012-005635</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005634:Drupal&#29992; Twitter Pull &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005634_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005634_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005634_AD_1.html</id>
    <published>2012-12-05T16:54:42+09:00</published>
    <updated>2012-12-05T16:54:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal用 Twitter Pull モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005634_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:twitter_pull_project:twitter_pull"/>
    <sec:identifier>JVNDB-2012-005634</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005633:Drupal &#29992; Hostip &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005633_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005633_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005633_AD_1.html</id>
    <published>2012-12-05T16:54:08+09:00</published>
    <updated>2012-12-05T16:54:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Hostip モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005633_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tekritisoftware:hostip"/>
    <sec:identifier>JVNDB-2012-005633</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005632:Drupal &#29992; Organic Groups &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12464;&#12523;&#12540;&#12503;&#12395;&#25237;&#31295;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005632_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005632_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005632_AD_1.html</id>
    <published>2012-12-05T16:51:39+09:00</published>
    <updated>2012-12-05T16:51:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Organic Groups (OG) モジュールは、保留中のグループメンバーシップを適切に維持しないため、任意のグループに投稿される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005632_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moshe_weitzman:organic_groups"/>
    <sec:identifier>JVNDB-2012-005632</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005631:Drupal &#29992; FileField Sources &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005631_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005631_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005631_AD_1.html</id>
    <published>2012-12-05T16:48:32+09:00</published>
    <updated>2012-12-05T16:48:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 FileField Sources モジュールは、フィールドが &quot;Reference existing&quot; ソースを有効にしている場合、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005631_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nathan_haug:filefield_sources"/>
    <sec:identifier>JVNDB-2012-005631</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005630:Drupal &#29992; Simplenews Scheduler &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489; &#12434;&#25407;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005630_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005630_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005630_AD_1.html</id>
    <published>2012-12-05T16:44:15+09:00</published>
    <updated>2012-12-05T16:44:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Simplenews Scheduler モジュールには、cron 実行のためのスケジュールフォームの中に任意の PHP コードを挿入される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005630_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler"/>
    <sec:identifier>JVNDB-2012-005630</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005629:Drupal &#29992; Password policy &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12527;&#12540;&#12489;&#12495;&#12483;&#12471;&#12517;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005629_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005629_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005629_AD_1.html</id>
    <published>2012-12-05T16:21:32+09:00</published>
    <updated>2012-12-05T16:21:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Password policy モジュールには、&quot;クライアント側のパスワード履歴のチェック (client-side password history checks)&quot; に関する処理に不備があるため、パスワードハッシュを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005629_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:erikwebb:password_policy"/>
    <sec:identifier>JVNDB-2012-005629</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005628:Drupal &#29992; MailChimp &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005628_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005628_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005628_AD_1.html</id>
    <published>2012-12-05T16:17:16+09:00</published>
    <updated>2012-12-05T16:17:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 MailChimp モジュールには、(1) 予測可能な &quot;webhook URL 用のキー&quot;、および (2) &quot;POST リクエストの Webhook 変数&quot; の不適切なサニタイズに関連して、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005628_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:thinkshout:mailchimp"/>
    <sec:identifier>JVNDB-2012-005628</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005627:Drupal &#29992; Time Spent &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005627_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005627_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005627_AD_1.html</id>
    <published>2012-12-05T16:05:46+09:00</published>
    <updated>2012-12-05T16:05:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Time Spent モジュールには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005627_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent"/>
    <sec:identifier>JVNDB-2012-005627</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005626:Samsung Kies Air &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005626_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005626_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005626_AD_1.html</id>
    <published>2012-12-05T15:59:44+09:00</published>
    <updated>2012-12-05T15:59:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Samsung Kies Air には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005626_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samsung:kies_air"/>
    <sec:identifier>JVNDB-2012-005626</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005625:Samsung Kies Air &#12395;&#12362;&#12369;&#12427;&#31471;&#26411;&#20869;&#12398;&#20219;&#24847;&#12398;&#12467;&#12531;&#12486;&#12531;&#12484;&#12434;&#35501;&#12415;&#21462;&#12425;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005625_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005625_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005625_AD_1.html</id>
    <published>2012-12-05T15:57:01+09:00</published>
    <updated>2012-12-05T15:57:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Samsung Kies Air は、認証について IP アドレスに依存しているため、端末内の任意のコンテンツを読み取られる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005625_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samsung:kies_air"/>
    <sec:identifier>JVNDB-2012-005625</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005624:WeeChat &#29992; &#12503;&#12521;&#12464;&#12452;&#12531; API &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005624_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005624_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005624_AD_1.html</id>
    <published>2012-12-05T15:48:26+09:00</published>
    <updated>2012-12-05T15:48:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WeeChat 用 プラグイン API の hook_process 関数には、シェル拡張に関する処理に不備があるため、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005624_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:flashtux:weechat"/>
    <sec:identifier>JVNDB-2012-005624</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005623:CMS Made Simple &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005623_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005623_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005623_AD_1.html</id>
    <published>2012-12-05T14:30:58+09:00</published>
    <updated>2012-12-05T14:30:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CMS Made Simple (CMSMS) の lib/filemanager/imagemanager/images.php には、クロスサイトリクエストフォージェリ脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005623_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple"/>
    <sec:identifier>JVNDB-2012-005623</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005622:OrangeHRM &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005622_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005622_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005622_AD_1.html</id>
    <published>2012-12-05T14:26:34+09:00</published>
    <updated>2012-12-05T14:26:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OrangeHRM には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005622_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:orangehrm:orangehrm"/>
    <sec:identifier>JVNDB-2012-005622</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005621:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12507;&#12473;&#12488;&#12495;&#12531;&#12464;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005621_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005621_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005621_AD_1.html</id>
    <published>2012-12-05T13:21:03+09:00</published>
    <updated>2012-12-05T13:21:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen は、古い AMD CPU 上で 64 ビット PV ゲストとして稼働する場合、AMD プロセッサの特定のバグから適切に保護されないため、サービス運用妨害 (ホストハング) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-0217 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005621_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005621</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005620:Xen &#29992; MMIO &#12458;&#12506;&#12524;&#12540;&#12471;&#12519;&#12531;&#12456;&#12511;&#12517;&#12524;&#12540;&#12479;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005620_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005620_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005620_AD_1.html</id>
    <published>2012-12-05T13:05:20+09:00</published>
    <updated>2012-12-05T13:05:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen 用 MMIO オペレーションエミュレータの arch/x86/hvm/io.c 内の handle_mmio 関数は、HVM ゲストで実行される場合、エミュレーションサイクル間で特定の状態情報を適切にリセットしないため、サービス運用妨害 (ゲスト OS クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005620_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005620</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005619:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12466;&#12473;&#12488;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005619_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005619_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005619_AD_1.html</id>
    <published>2012-12-05T12:22:40+09:00</published>
    <updated>2012-12-05T12:22:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen は、ゲスト OS が syscall または sysenter 命令のハンドラを登録していない場合、General Protection Fault を挿入する際の例外インジェクション用のフラグを適切にクリアしないため、サービス運用妨害 (ゲストクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005619_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005619</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005618:Joomla! &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005618_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005618_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005618_AD_1.html</id>
    <published>2012-12-05T11:58:09+09:00</published>
    <updated>2012-12-05T11:58:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! は、権限を適切にチェックしないため &quot;管理者用バックエンド (administrative back end)&quot; に関する重要な情報を取得される脆弱性が存在します。  本脆弱性は CVE-2012-1611 と重複している可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005618_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>JVNDB-2012-005618</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005617:Joomla! &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005617_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005617_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005617_AD_1.html</id>
    <published>2012-12-05T11:55:27+09:00</published>
    <updated>2012-12-05T11:55:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! には、&quot;不十分なランダム性 (insufficient randomness)&quot; および &quot;パスワードリセットにおける脆弱性 (password reset vulnerability)&quot; に関連して、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005617_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla"/>
    <sec:identifier>JVNDB-2012-005617</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005616:Google Chrome &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005616_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005616_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005616_AD_1.html</id>
    <published>2012-12-05T11:48:07+09:00</published>
    <updated>2012-12-05T11:48:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、ファイルパスを適切に処理しないため、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005616_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005616</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005615:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005615_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005615_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005615_AD_1.html</id>
    <published>2012-12-05T11:46:25+09:00</published>
    <updated>2012-12-05T11:46:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005615_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005615</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005614:Google Chrome OS &#12398; WebGL &#12469;&#12502;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005614_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005614_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005614_AD_1.html</id>
    <published>2012-12-05T11:39:46+09:00</published>
    <updated>2012-12-05T11:39:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome OS の WebGL サブシステムには、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005614_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:chrome_os"/>
    <sec:identifier>JVNDB-2012-005614</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6062:wireshark: The dissect_rtcp_app function in epan/dissectors/pa...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6062_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6062_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6062_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dissect_rtcp_app function in epan/dissectors/packet-rtcp.c in the RTCP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6062_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.6.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.10"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.11"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.3"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.4"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.5"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.6"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.7"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.8"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.9"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6062</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6061:wireshark: The dissect_wtp_common function in epan/dissectors/...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6061_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6061_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6061_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dissect_wtp_common function in epan/dissectors/packet-wtp.c in the WTP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 uses an incorrect data type for a certain length field, which allows remote attackers to cause a denial of service (integer overflow and infinite loop) via a crafted value in a packet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6061_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.6.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.10"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.11"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.3"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.4"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.5"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.6"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.7"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.8"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.9"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6061</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6060:wireshark: Integer overflow in the dissect_iscsi_pdu function ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6060_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6060_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6060_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in the dissect_iscsi_pdu function in epan/dissectors/packet-iscsi.c in the iSCSI dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6060_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.6.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.10"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.11"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.3"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.4"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.5"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.6"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.7"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.8"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.9"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6060</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6059:wireshark: The dissect_isakmp function in epan/dissectors/pack...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6059_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6059_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6059_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dissect_isakmp function in epan/dissectors/packet-isakmp.c in the ISAKMP dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 uses an incorrect data structure to determine IKEv2 decryption parameters, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6059_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.6.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.10"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.11"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.3"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.4"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.5"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.6"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.7"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.8"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.9"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6059</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6058:wireshark: Integer overflow in the dissect_icmpv6 function in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6058_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6058_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6058_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in the dissect_icmpv6 function in epan/dissectors/packet-icmpv6.c in the ICMPv6 dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted Number of Sources value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6058_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6058</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6057:wireshark: The dissect_eigrp_metric_comm function in epan/diss...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6057_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6057_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6057_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dissect_eigrp_metric_comm function in epan/dissectors/packet-eigrp.c in the EIGRP dissector in Wireshark 1.8.x before 1.8.4 uses the wrong data type for a certain offset value, which allows remote attackers to cause a denial of service (integer overflow and infinite loop) via a malformed packet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6057_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6057</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6056:wireshark: Integer overflow in the dissect_sack_chunk function...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6056_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6056_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6056_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in the dissect_sack_chunk function in epan/dissectors/packet-sctp.c in the SCTP dissector in Wireshark 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted Duplicate TSN count.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6056_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6056</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6055:wireshark: epan/dissectors/packet-3g-a11.c in the 3GPP2 A11 di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6055_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6055_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6055_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
epan/dissectors/packet-3g-a11.c in the 3GPP2 A11 dissector in Wireshark 1.8.x before 1.8.4 allows remote attackers to cause a denial of service (infinite loop) via a zero value in a sub-type length field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6055_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6055</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6054:wireshark: The dissect_sflow_245_address_type function in epan...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6054_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6054_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6054_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dissect_sflow_245_address_type function in epan/dissectors/packet-sflow.c in the sFlow dissector in Wireshark 1.8.x before 1.8.4 does not properly handle length calculations for an invalid IP address type, which allows remote attackers to cause a denial of service (infinite loop) via a packet that is neither IPv4 nor IPv6.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6054_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6054</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6053:wireshark: epan/dissectors/packet-usb.c in the USB dissector i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6053_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6053_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6053_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
epan/dissectors/packet-usb.c in the USB dissector in Wireshark 1.6.x before 1.6.12 and 1.8.x before 1.8.4 relies on a length field to calculate an offset value, which allows remote attackers to cause a denial of service (infinite loop) via a zero value for this field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6053_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.6.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.10"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.11"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.3"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.4"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.5"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.6"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.7"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.8"/>
    <category term="cpe:/a:wireshark:wireshark:1.6.9"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6053</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6052:wireshark: Wireshark 1.8.x before 1.8.4 allows remote attacker...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6052_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6052_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6052_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Wireshark 1.8.x before 1.8.4 allows remote attackers to obtain sensitive hostname information by reading pcap-ng files.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6052_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wireshark:wireshark:1.8.0"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.1"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.2"/>
    <category term="cpe:/a:wireshark:wireshark:1.8.3"/>
    <sec:identifier>CVE-2012-6052</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4985:counteract: The Forescout CounterACT NAC device 6.3.4.1 does no...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4985_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4985_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4985_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Forescout CounterACT NAC device 6.3.4.1 does not block ARP and ICMP traffic from unrecognized clients, which allows remote attackers to conduct ARP poisoning attacks via crafted packets.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4985_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract:6.3.4.10"/>
    <sec:identifier>CVE-2012-4985</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4983:counteract: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4983_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4983_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4983_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities on the Forescout CounterACT NAC device before 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the a parameter to assets/login or (2) the query parameter to assets/rangesearch.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4983_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract:6.3.4.10"/>
    <sec:identifier>CVE-2012-4983</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4982:counteract: Open redirect vulnerability in assets/login on the ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4982_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4982_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4982_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the a parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4982_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:forescout:counteract:6.3.4.10"/>
    <sec:identifier>CVE-2012-4982</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4862:rational_developer_for_system_z: The Host Connect emulator in IBM Rational Developer...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4862_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4862_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4862_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Host Connect emulator in IBM Rational Developer for System z 7.1 through 8.5.1 does not properly store the SSL certificate password, which allows local users to obtain sensitive information via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4862_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:7.1"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:7.6.2.1"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:7.6.2.2"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:7.6.2.3"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:7.6.2.4"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.1.0"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.2"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.3"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.3.1"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.3.2"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.0.3.3"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.5.0"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.5.0.1"/>
    <category term="cpe:/a:ibm:rational_developer_for_system_z:8.5.1"/>
    <sec:identifier>CVE-2012-4862</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4609:rsa_netwitness_informer: The web interface in EMC RSA NetWitness Informer be...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4609_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4609_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4609_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to conduct clickjacking attacks via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4609_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_netwitness_informer:2.0.5.5 and previous versions"/>
    <sec:identifier>CVE-2012-4609</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4608:rsa_netwitness_informer: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4608_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4608_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4608_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack the authentication of arbitrary users.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4608_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_netwitness_informer:2.0.5.5 and previous versions"/>
    <sec:identifier>CVE-2012-4608</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4347:messaging_gateway: Multiple directory traversal vulnerabilities in Sym...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4347_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4347_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4347_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple directory traversal vulnerabilities in Symantec Messaging Gateway 9.5 and 9.5.1 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) logFile parameter in a logs action to brightmail/export or (2) localBackupFileSelection parameter in an APPLIANCE restoreSource action to brightmail/admin/restore/download.do.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4347_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:messaging_gateway:9.5"/>
    <category term="cpe:/a:symantec:messaging_gateway:9.5.1"/>
    <sec:identifier>CVE-2012-4347</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3317:websphere_message_broker: IBM WebSphere Message Broker 6.1 before 6.1.0.11, 7...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3317_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3317_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3317_AD_1.html</id>
    <published>2012-12-05T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM WebSphere Message Broker 6.1 before 6.1.0.11, 7.0 before 7.0.0.5, and 8.0 before 8.0.0.2 has incorrect ownership of certain uninstaller Java Runtime Environment (JRE) files, which might allow local users to gain privileges by leveraging access to uid 501 or gid 300.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3317_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.1"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.10"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.2"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.3"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.4"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.5"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.6"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.7"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.8"/>
    <category term="cpe:/a:ibm:websphere_message_broker:6.1.0.9"/>
    <category term="cpe:/a:ibm:websphere_message_broker:7.0."/>
    <category term="cpe:/a:ibm:websphere_message_broker:7.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_message_broker:7.0.0.2"/>
    <category term="cpe:/a:ibm:websphere_message_broker:7.0.0.3"/>
    <category term="cpe:/a:ibm:websphere_message_broker:7.0.0.4"/>
    <category term="cpe:/a:ibm:websphere_message_broker:8.0"/>
    <category term="cpe:/a:ibm:websphere_message_broker:8.0.0.1"/>
    <sec:identifier>CVE-2012-3317</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6067:freeftpd: freeFTPd.exe in freeFTPd through 1.0.11 allows remo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6067_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6067_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6067_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
freeFTPd.exe in freeFTPd through 1.0.11 allows remote attackers to bypass authentication via a crafted SFTP session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6067_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:freeftpd:freeftpd:1.0"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.1"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.10"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.11 and previous versions"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.2"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.3"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.4"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.5"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.6"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.7"/>
    <category term="cpe:/a:freeftpd:freeftpd:1.0.8"/>
    <sec:identifier>CVE-2012-6067</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6066:freesshd: freeSSHd.exe in freeSSHd through 1.2.6 allows remot...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6066_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6066_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6066_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6066_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:freesshd:freesshd:1.2.1"/>
    <category term="cpe:/a:freesshd:freesshd:1.2.2"/>
    <category term="cpe:/a:freesshd:freesshd:1.2.6 and previous versions"/>
    <sec:identifier>CVE-2012-6066</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5975:tectia_server: The SSH USERAUTH CHANGE REQUEST feature in SSH Tect...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5975_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5975_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5975_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6.2.5, and 6.3.0 through 6.3.2 on UNIX and Linux, when old-style password authentication is enabled, allows remote attackers to bypass authentication via a crafted session involving entry of blank passwords, as demonstrated by a root login session from a modified OpenSSH client with an added input_userauth_passwd_changereq call in sshconnect2.c.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5975_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ssh:tectia_server:6.0.10"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.11"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.12"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.13"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.14"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.17"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.18"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.19"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.20."/>
    <category term="cpe:/a:ssh:tectia_server:6.0.4"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.5"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.6"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.7"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.8"/>
    <category term="cpe:/a:ssh:tectia_server:6.0.9"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.0"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.1"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.12"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.2"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.3"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.4"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.5"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.6"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.7"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.8"/>
    <category term="cpe:/a:ssh:tectia_server:6.1.9"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.0"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.1"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.2"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.3"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.4"/>
    <category term="cpe:/a:ssh:tectia_server:6.2.5"/>
    <category term="cpe:/a:ssh:tectia_server:6.3.0"/>
    <category term="cpe:/a:ssh:tectia_server:6.3.1"/>
    <category term="cpe:/a:ssh:tectia_server:6.3.2"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>CVE-2012-5975</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005613:Drupal &#29992; Drag &amp; Drop Gallery &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005613_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005613_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005613_AD_1.html</id>
    <published>2012-12-04T16:28:36+09:00</published>
    <updated>2012-12-04T16:28:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drag &amp; Drop Gallery モジュールには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005613_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery"/>
    <sec:identifier>JVNDB-2012-005613</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005612:Drupal &#29992; Drag &amp; Drop Gallery &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005612_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005612_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005612_AD_1.html</id>
    <published>2012-12-04T16:27:53+09:00</published>
    <updated>2012-12-04T16:27:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drag &amp; Drop Gallery モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005612_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery"/>
    <sec:identifier>JVNDB-2012-005612</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005611:Drupal &#29992; Drag &amp; Drop Gallery &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005611_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005611_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005611_AD_1.html</id>
    <published>2012-12-04T16:27:22+09:00</published>
    <updated>2012-12-04T16:27:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drag &amp; Drop Gallery モジュールには、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005611_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery"/>
    <sec:identifier>JVNDB-2012-005611</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005610:Drupal &#29992; Drag &amp; Drop Gallery &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005610_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005610_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005610_AD_1.html</id>
    <published>2012-12-04T16:26:43+09:00</published>
    <updated>2012-12-04T16:26:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drag &amp; Drop Gallery モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005610_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery"/>
    <sec:identifier>JVNDB-2012-005610</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005609:Drupal &#29992; Security Questions &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12398;&#36074;&#21839;&#12362;&#12424;&#12403;&#22238;&#31572;&#12434;&#32232;&#38598;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005609_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005609_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005609_AD_1.html</id>
    <published>2012-12-04T16:26:07+09:00</published>
    <updated>2012-12-04T16:26:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Security Questions モジュールは、アクセスを適切に制限しないため、任意のユーザの質問および回答を編集される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005609_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:security_questions_project:security_questions"/>
    <sec:identifier>JVNDB-2012-005609</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005608:Drupal &#29992; Colorbox Node &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005608_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005608_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005608_AD_1.html</id>
    <published>2012-12-04T16:24:15+09:00</published>
    <updated>2012-12-04T16:24:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Colorbox Node モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005608_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dennis_blake:colorbox_node"/>
    <sec:identifier>JVNDB-2012-005608</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005607:Drupal &#29992; Restrict node page view &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#26410;&#20844;&#38283;&#12398;&#12494;&#12540;&#12489;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005607_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005607_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005607_AD_1.html</id>
    <published>2012-12-04T16:21:18+09:00</published>
    <updated>2012-12-04T16:21:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Restrict node page view モジュールには、未公開のノードにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005607_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:christian_johansson:restrict_node_page_view"/>
    <sec:identifier>JVNDB-2012-005607</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005606:Drupal &#29992; Drag &amp; Drop Gallery &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005606_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005606_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005606_AD_1.html</id>
    <published>2012-12-04T16:20:22+09:00</published>
    <updated>2012-12-04T16:20:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drag &amp; Drop Gallery モジュール内の upload.php には、ファイルをアップロードされることにより、任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005606_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery"/>
    <sec:identifier>JVNDB-2012-005606</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005605:Drupal &#29992; Search Autocomplete &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12458;&#12540;&#12488;&#12467;&#12531;&#12503;&#12522;&#12540;&#12488;&#12434;&#28961;&#21177;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005605_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005605_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005605_AD_1.html</id>
    <published>2012-12-04T16:19:06+09:00</published>
    <updated>2012-12-04T16:19:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Search Autocomplete モジュールは、モジュールの管理ページへのアクセスを適切に制限しないため、オートコンプリートを無効される、または優先順位を変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005605_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dominique_clause:search_autocomplete"/>
    <sec:identifier>JVNDB-2012-005605</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005604:Drupal &#29992; Listhandler &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005604_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005604_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005604_AD_1.html</id>
    <published>2012-12-04T16:13:50+09:00</published>
    <updated>2012-12-04T16:13:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Listhandler モジュールは、電子メールがインポートされる際、アクセス権限を適切にチェックしないため、アクセス制限を回避されるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005604_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:philip_ludlam:listhandler"/>
    <sec:identifier>JVNDB-2012-005604</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005603:Drupal &#29992; Hashcash &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005603_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005603_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005603_AD_1.html</id>
    <published>2012-12-04T15:17:14+09:00</published>
    <updated>2012-12-04T15:17:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Hashcash モジュールには、&quot;Log failed hashcash&quot; が有効になっている場合、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005603_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simon_rycroft:hashcash"/>
    <sec:identifier>JVNDB-2012-005603</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005602:Drupal &#29992; Privatemsg &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005602_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005602_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005602_AD_1.html</id>
    <published>2012-12-04T15:16:35+09:00</published>
    <updated>2012-12-04T15:16:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Privatemsg モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005602_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:privatemsg_project:privatemsg"/>
    <sec:identifier>JVNDB-2012-005602</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005601:Python Keyring &#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005601_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005601_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005601_AD_1.html</id>
    <published>2012-12-04T14:30:38+09:00</published>
    <updated>2012-12-04T14:30:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Python Keyring は、CryptedFileKeyring ファイルのパスワードを暗号化する際に、暗号の安全な初期化を行わないため、パスワードを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005601_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:python:keyring"/>
    <sec:identifier>JVNDB-2012-005601</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005600:libssh &#12398; sftp.c &#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005600_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005600_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005600_AD_1.html</id>
    <published>2012-12-04T14:30:08+09:00</published>
    <updated>2012-12-04T14:30:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libssh の sftp.c 内の sftp_mkdir 関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態となる、および任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-4559 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005600_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh"/>
    <sec:identifier>JVNDB-2012-005600</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005599:libssh &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005599_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005599_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005599_AD_1.html</id>
    <published>2012-12-04T14:29:34+09:00</published>
    <updated>2012-12-04T14:29:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libssh には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005599_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh"/>
    <sec:identifier>JVNDB-2012-005599</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005598:libssh &#12398; keys.c &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005598_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005598_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005598_AD_1.html</id>
    <published>2012-12-04T14:28:41+09:00</published>
    <updated>2012-12-04T14:28:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libssh の keys.c 内の下記の関数は、&quot;エラーパス上の無効なポインタ&quot; を解放するため、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。  (1) publickey_make_dss 関数 (2) publickey_make_rsa 関数 (3) signature_from_string 関数 (4) ssh_do_sign 関数 (5) ssh_sign_session_id 関数&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005598_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh"/>
    <sec:identifier>JVNDB-2012-005598</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005597:libssh &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005597_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005597_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005597_AD_1.html</id>
    <published>2012-12-04T14:27:19+09:00</published>
    <updated>2012-12-04T14:27:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libssh には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005597_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh"/>
    <sec:identifier>JVNDB-2012-005597</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005596:libssh &#12398;&#35079;&#25968;&#12398;&#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005596_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005596_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005596_AD_1.html</id>
    <published>2012-12-04T14:26:44+09:00</published>
    <updated>2012-12-04T14:26:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libssh の下記の関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態になる、および任意のコードを実行される脆弱性が存在します。  (1) agent.c 内の agent_sign_data 関数 (2) channels.c 内の channel_request 関数 (3) auth.c 内の ssh_userauth_pubkey 関数 (4) sftp.c 内の sftp_parse_attr_3 関数 (5) keyfiles.c 内の try_publickey_from_file 関数&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005596_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh"/>
    <sec:identifier>JVNDB-2012-005596</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005595:libunity-webapps &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12513;&#12514;&#12522;&#30772;&#25613;&#12362;&#12424;&#12403;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005595_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005595_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005595_AD_1.html</id>
    <published>2012-12-04T14:25:50+09:00</published>
    <updated>2012-12-04T14:25:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libunity-webapps には、解放済みメモリの使用 (Use-after-free) により、サービス運用妨害 (メモリ破損およびクラッシュ) 状態となる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005595_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps"/>
    <sec:identifier>JVNDB-2012-005595</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005594:IBM WebSphere Portal &#12398; theme &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005594_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005594_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005594_AD_1.html</id>
    <published>2012-12-04T14:12:27+09:00</published>
    <updated>2012-12-04T14:12:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Portal の theme コンポーネント内の LayerLoader.jsp には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005594_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_portal"/>
    <sec:identifier>JVNDB-2012-005594</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005593:Apache Tomcat &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12540;&#12514;&#12531;&#12398;&#20572;&#27490;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005593_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005593_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005593_AD_1.html</id>
    <published>2012-12-04T14:11:21+09:00</published>
    <updated>2012-12-04T14:11:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat には、サービス運用妨害 (デーモンの停止) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005593_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005593</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005592:Apache HTTP Server &#12398; mod_proxy_ajp &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005592_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005592_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005592_AD_1.html</id>
    <published>2012-12-04T14:10:51+09:00</published>
    <updated>2012-12-04T14:10:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache HTTP Server の mod_proxy_ajp モジュールには、サービス運用妨害 (ワーカーの消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005592_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:http_server"/>
    <sec:identifier>JVNDB-2012-005592</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005591:Oracle MySQL &#12362;&#12424;&#12403; MariaDB &#12395;&#12362;&#12369;&#12427;&#12518;&#12540;&#12470;&#21517;&#12434;&#21015;&#25369;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005591_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005591_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005591_AD_1.html</id>
    <published>2012-12-04T14:09:51+09:00</published>
    <updated>2012-12-04T14:09:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL および MariaDB は、ユーザ名の存在有無に応じて異なる遅延時間を要する異なるエラーメッセージを生成するため、存在するユーザ名を列挙される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005591_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb"/>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-005591</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005590:Oracle MySQL &#12362;&#12424;&#12403; MariaDB &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (mysqld &#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005590_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005590_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005590_AD_1.html</id>
    <published>2012-12-04T14:08:42+09:00</published>
    <updated>2012-12-04T14:08:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL および MariaDB には、サービス運用妨害 (mysqld クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005590_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb"/>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-005590</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005589:Oracle MySQL &#12362;&#12424;&#12403; MariaDB &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005589_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005589_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005589_AD_1.html</id>
    <published>2012-12-04T14:07:36+09:00</published>
    <updated>2012-12-04T14:07:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL および MariaDB には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005589_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb"/>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-005589</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005588:Oracle MySQL &#12362;&#12424;&#12403; MariaDB &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005588_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005588_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005588_AD_1.html</id>
    <published>2012-12-04T14:06:32+09:00</published>
    <updated>2012-12-04T14:06:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL および MariaDB には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005588_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb"/>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-005588</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5138:chrome: Google Chrome before 23.0.1271.95 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5138_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5138_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5138_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5138_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94 and previous versions"/>
    <sec:identifier>CVE-2012-5138</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5137:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5137_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5137_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5137_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the Media Source API.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5137_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:chrome:23.0.1271.91"/>
    <category term="cpe:/a:google:chrome:23.0.1271.92"/>
    <category term="cpe:/a:google:chrome:23.0.1271.93"/>
    <category term="cpe:/a:google:chrome:23.0.1271.94 and previous versions"/>
    <sec:identifier>CVE-2012-5137</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5129:chrome: Heap-based buffer overflow in the WebGL subsystem i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5129_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5129_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5129_AD_1.html</id>
    <published>2012-12-04T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5129_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:chrome:23.0.1271.91"/>
    <category term="cpe:/o:google:chrome:23.0.1271.92"/>
    <category term="cpe:/o:google:chrome:23.0.1271.93 and previous versions"/>
    <sec:identifier>CVE-2012-5129</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6065:om_maximenu: The OM Maximenu module 6.x-1.43 and earlier for Dru...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6065_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6065_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6065_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The OM Maximenu module 6.x-1.43 and earlier for Drupal, when the &quot;Title has PHP&quot; option is enabled, allows remote authenticated users with the &quot;Administer OM Maximenu&quot; permission to execute arbitrary PHP code via a &quot;Link Title,&quot; a different vulnerability than CVE-2012-5553.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6065_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc1"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc2"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc3"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc4"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc5"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc6"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc7"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.1"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.10"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.11"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.12"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.13"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.14"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.15"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.16"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.17"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.18"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.19"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.2"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.20"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.21"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.22"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.23"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.24"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.25"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.26"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.27"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.28"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.29"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.3"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.30"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.31"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.32"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.33"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.34"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.35"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.36"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.37"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.38"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.39"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.4"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.40"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.41"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.42"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.43 and previous versions"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.5"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.6"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.7"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.8"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.9"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-6065</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6064:cms_made_simple: Directory traversal vulnerability in lib/filemanage...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6064_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6064_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6064_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in lib/filemanager/imagemanager/images.php in CMS Made Simple (CMSMS) before 1.11.2.1 allows remote authenticated administrators to delete arbitrary files via a .. (dot dot) in the deld parameter.  NOTE: this can be leveraged using CSRF (CVE-2012-5450) to allow remote attackers to delete arbitrary files.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6064_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.13"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.2.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.5.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.3.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.11.2 and previous versions"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3:beta1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3:beta2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.7.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4.2"/>
    <sec:identifier>CVE-2012-6064</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5859:kies_air: Samsung Kies Air 2.1.207051 and 2.1.210161 allows r...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5859_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5859_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5859_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws/ssd.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5859_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samsung:kies_air:2.1.207051"/>
    <category term="cpe:/a:samsung:kies_air:2.1.210161"/>
    <sec:identifier>CVE-2012-5859</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5858:kies_air: Samsung Kies Air 2.1.207051 and 2.1.210161 relies o...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5858_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5858_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5858_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Samsung Kies Air 2.1.207051 and 2.1.210161 relies on the IP address for authentication, which allows remote man-in-the-middle attackers to read arbitrary phone contents by spoofing or controlling the IP address.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5858_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samsung:kies_air:2.1.207051"/>
    <category term="cpe:/a:samsung:kies_air:2.1.210161"/>
    <sec:identifier>CVE-2012-5858</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5569:basic_webmail: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5569_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5569_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5569_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the Basic webmail module 6.x-1.x before 6.x-1.2 for Drupal allow remote attackers to inject arbitrary web script or HTML via a (1) page title or (2) crafted email message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5569_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:jason_flatt:basic_webmail:6.x-1.0"/>
    <category term="cpe:/a:jason_flatt:basic_webmail:6.x-1.1"/>
    <category term="cpe:/a:jason_flatt:basic_webmail:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5569</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5559:ctools: Cross-site scripting (XSS) vulnerability in the pag...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5559_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5559_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5559_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the page manager node view task in the Chaos tool suite (ctools) module 6.x-1.x before 6.x-1.10 for Drupal allows remote authenticated users with permissions to submit or edit nodes to inject arbitrary web script or HTML via the page title.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5559_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:alpha1"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:alpha2"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:alpha3"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:beta1"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:beta2"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:beta3"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:beta4"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.0:rc1"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.1"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.2"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.3"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.4"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.5"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.6"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.7"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.8"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.9"/>
    <category term="cpe:/a:angrydonuts:ctools:6.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5559</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5557:user_readonly: The User Read-Only module 6.x-1.x before 6.x-1.4 an...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5557_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5557_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5557_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The User Read-Only module 6.x-1.x before 6.x-1.4 and 7.x-1.x before 7.x-1.4 for Drupal, does not properly assign roles when there are more than three roles on the site and certain unspecified configurations, which might allow remote authenticated users to gain privileges by performing certain operations, as demonstrated by changing a password.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5557_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:6.x-1.0"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:6.x-1.1"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:6.x-1.2"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:6.x-1.3"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:6.x-1.x:dev"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:7.x-1.0"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:7.x-1.1"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:7.x-1.2"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:7.x-1.3"/>
    <category term="cpe:/a:user_read-only_project:user_readonly:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5557</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5556:restws: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5556_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5556_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5556_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities in the RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.1 and 7.x-2.x before 7.x-2.0-alpha3 for Drupal allow remote attackers to hijack the authentication of arbitrary users via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5556_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-1.0"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-1.0:beta1"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-1.0:beta2"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-1.x:dev"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-2.0:alpha1"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-2.0:alpha2"/>
    <category term="cpe:/a:restful_web_services_project:restws:7.x-2.x:dev"/>
    <sec:identifier>CVE-2012-5556</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5554:webform_civicrm: The default configuration for the Webform CiviCRM I...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5554_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5554_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5554_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The default configuration for the Webform CiviCRM Integration module 7.x-3.x before 7.x-3.2 has &quot;Enforce Permissions&quot; disabled, which allows remote attackers to obtain contact information by reading webforms.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5554_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:beta1"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:beta2"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:beta3"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:beta4"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:beta5"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:rc1"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:rc2"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:rc3"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.0:rc4"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.1"/>
    <category term="cpe:/a:coleman_watts:webform_civicrm:7.x-3.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5554</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5553:om_maximenu: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5553_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5553_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5553_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the OM Maximenu module 6.x-1.x before 6.x-1.44 and 7.x-1.x before 7.x-1.44 for Drupal allow remote authenticated users with the &quot;administer OM Maximenu&quot; permission to inject arbitrary web script or HTML via the (1) Menu Title (2) Link Title, (3) Path Query, (4) Anchor, or (5) vocabulary names.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5553_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc1"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc2"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc3"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc4"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc5"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc6"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.0:rc7"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.1"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.10"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.11"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.12"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.13"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.14"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.15"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.16"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.17"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.18"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.19"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.2"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.20"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.21"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.22"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.23"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.24"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.25"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.26"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.27"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.28"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.29"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.3"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.30"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.31"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.32"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.33"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.34"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.35"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.36"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.37"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.38"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.39"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.4"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.40"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.41"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.42"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.43"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.5"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.6"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.7"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.8"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.9"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:6.x-1.x:dev"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.0"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.1"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.10"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.11"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.12"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.13"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.14"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.15"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.16"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.17"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.18"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.19"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.2"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.20"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.21"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.22"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.23"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.24"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.25"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.26"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.27"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.28"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.29"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.3"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.30"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.31"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.32"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.33"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.34"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.35"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.36"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.37"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.38"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.39"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.4"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.40"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.41"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.42"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.43"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.5"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.6"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.7"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.8"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.9"/>
    <category term="cpe:/a:daniel_honrade:om_maximenu:7.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5553</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5552:password_policy: The Password policy module 6.x-1.x before 6.x-1.5 a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5552_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5552_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5552_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Password policy module 6.x-1.x before 6.x-1.5 and 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to obtain password hashes by sniffing the network, related to &quot;client-side password history checks.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5552_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0:alpha1"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0:alpha2"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0:alpha3"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0:alpha4"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.0:beta1"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.1"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.2"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.3"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.4"/>
    <category term="cpe:/a:erikwebb:password_policy:6.x-1.x:dev"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:beta1"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:beta2"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:beta3"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:beta4"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:rc1"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:rc2"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.0:rc3"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.1"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.2"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.3"/>
    <category term="cpe:/a:erikwebb:password_policy:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5552</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5551:mailchimp: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5551_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5551_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5551_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the MailChimp module 7.x-2.x before 7.x-2.7 for Drupal allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) a predictable &quot;webhook URL key&quot; and (2) improper sanitization of &quot;Webhook variables from POST requests.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5551_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0:alpha1"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0:beta1"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0:beta2"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0:rc1"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.0:rc2"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.1"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.2"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.3"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.4"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.5"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.6"/>
    <category term="cpe:/a:thinkshout:mailchimp:7.x-2.x:dev"/>
    <sec:identifier>CVE-2012-5551</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5550:time_spent: SQL injection vulnerability in the Time Spent modul...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5550_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5550_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5550_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Time Spent module 6.x and 7.x for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5550_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent:6.x-2.x"/>
    <category term="cpe:/a:carlos_carvalhar:time_spent:7.x-2.x"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5550</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5549:time_spent: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5549_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5549_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5549_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the Time Spent module 6.x and 7.x for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5549_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent:6.x-2.x"/>
    <category term="cpe:/a:carlos_carvalhar:time_spent:7.x-2.x"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5549</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5548:time_spent: Cross-site scripting (XSS) vulnerability in the Tim...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5548_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5548_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5548_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Time Spent module 6.x and 7.x for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5548_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:carlos_carvalhar:time_spent:6.x-2.x"/>
    <category term="cpe:/a:carlos_carvalhar:time_spent:7.x-2.x"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-5548</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5547:search_api: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5547_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5547_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5547_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities in the Search API module 7.x-1.x before 7.x-1.3 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) enable a server via a server action or (2) enable a search index via an enable index action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5547_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta1"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta10"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta2"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta3"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta4"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta5"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta6"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta7"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta8"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:beta9"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.0:rc1"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.1"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.2"/>
    <category term="cpe:/a:thomas_seidl:search_api:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5547</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5545:sharethis: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5545_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5545_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5545_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the ShareThis module 7.x-2.x before 7.x-2.5 for Drupal allow remote authenticated users with the &quot;administer sharethis&quot; permission to inject arbitrary web script or HTML via unspecified vectors related to &quot;JavaScript settings.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5545_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.0"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.1"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.2"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.3"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.4"/>
    <category term="cpe:/a:rob_loach:sharethis:7.x-2.x:dev"/>
    <sec:identifier>CVE-2012-5545</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5544:mandrill: The Mandrill module 7.x-1.x before 7.x-1.2 for Drup...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5544_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5544_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5544_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Mandrill module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users to obtain password reset links by reading the logs in the Mandrill dashboard.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5544_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:thinkshout:mandrill:7.x-1.0"/>
    <category term="cpe:/a:thinkshout:mandrill:7.x-1.0:alpha1"/>
    <category term="cpe:/a:thinkshout:mandrill:7.x-1.0:beta1"/>
    <category term="cpe:/a:thinkshout:mandrill:7.x-1.1"/>
    <category term="cpe:/a:thinkshout:mandrill:7.x-1.x"/>
    <sec:identifier>CVE-2012-5544</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5543:feeds: The Feeds module 7.x-2.x before 7.x-2.0-alpha6 for ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5543_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5543_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5543_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Feeds module 7.x-2.x before 7.x-2.0-alpha6 for Drupal, when a field is mapped to the node's author, does not properly check permissions, which allows remote attackers to create arbitrary nodes via a crafted source feed.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5543_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.0:alpha1"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.0:alpha2"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.0:alpha3"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.0:alpha4"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.0:alpha5"/>
    <category term="cpe:/a:feeds_project:feeds:7.x-2.x"/>
    <sec:identifier>CVE-2012-5543</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5542:commerce_extra_panes: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5542_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5542_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5542_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the Commerce Extra Panes module 7.x-1.x before 7.x-1.1 in Drupal allows remote attackers to hijack the authentication of administrators for requests that enable or disable a Commerce extra panes pane via unspecified vectors related to &quot;the link to reorder items.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5542_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:pedro_cambra:commerce_extra_panes:7.x-1.0"/>
    <category term="cpe:/a:pedro_cambra:commerce_extra_panes:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5542</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5541:twitter_pull: Cross-site scripting (XSS) vulnerability in the Twi...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5541_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5541_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5541_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Twitter Pull module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.0-rc3 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to &quot;data coming from Twitter.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5541_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:6.x-1.0"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:6.x-1.1"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:6.x-1.2"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:6.x-1.x:dev"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:7.x-1.0:alpha1"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:7.x-1.0:rc1"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:7.x-1.0:rc2"/>
    <category term="cpe:/a:twitter_pull_project:twitter_pull:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5541</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5540:hostip: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5540_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5540_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5540_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the Hostip module 6.x-2.x before 6.x-2.2 and 7.x-2.x before 7.x-2.2 for Drupal allow remote attackers with control of hostip.info to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5540_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:tekritisoftware:hostip:6.x-2.0"/>
    <category term="cpe:/a:tekritisoftware:hostip:6.x-2.1"/>
    <category term="cpe:/a:tekritisoftware:hostip:7.x-2.0"/>
    <category term="cpe:/a:tekritisoftware:hostip:7.x-2.1"/>
    <sec:identifier>CVE-2012-5540</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5539:organic_groups: The Organic Groups (OG) module 7.x-1.x before 7.x-1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5539_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5539_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5539_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Organic Groups (OG) module 7.x-1.x before 7.x-1.5 for Drupal does not properly maintain pending group memberships, which allows remote authenticated users to post to arbitrary groups by modifying their own account while a pending membership is waiting to be approved.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5539_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.0"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.0:alpha1"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.1"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.1:rc1"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.1:rc2"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.1:rc3"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.1:rc4"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.2"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.3"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.4"/>
    <category term="cpe:/a:moshe_weitzman:organic_groups:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5539</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5538:filefield_sources: Cross-site scripting (XSS) vulnerability in the Fil...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5538_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5538_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5538_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the FileField Sources module 6.x-1.x before 6.x-1.6 and 7.x-1.x before 7.x-1.6 for Drupal, when the field has &quot;Reference existing&quot; source enabled, allows remote authenticated users to inject arbitrary web script or HTML via the filename of an uploaded file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5538_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.0"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.1"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.2"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.3"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.4"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.5"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:6.x-1.x:dev"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:7.x-1.2:beta1"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:7.x-1.3"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:7.x-1.4"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:7.x-1.5"/>
    <category term="cpe:/a:nathan_haug:filefield_sources:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5538</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5537:simplenews_scheduler: The Simplenews Scheduler module 6.x-2.x before 6.x-...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5537_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5537_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5537_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Simplenews Scheduler module 6.x-2.x before 6.x-2.4 for Drupal allows remote authenticated users with the &quot;send scheduled newsletters&quot; permission to inject arbitrary PHP code into the scheduling form, which is later executed by cron.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5537_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.0"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.0:beta2"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.0:beta3"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.0:beta4"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.1"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.2"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.3"/>
    <category term="cpe:/a:simplenews_scheduler_project:simplenews_scheduler:6.x-2.x:dev"/>
    <sec:identifier>CVE-2012-5537</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5534:weechat: The hook_process function in the plugin API for Wee...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5534_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5534_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5534_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The hook_process function in the plugin API for WeeChat 0.3.0 through 0.3.9.1 allows remote attackers to execute arbitrary commands via shell metacharacters in a command from a plugin, related to &quot;shell expansion.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5534_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:flashtux:weechat:0.3.0"/>
    <category term="cpe:/a:flashtux:weechat:0.3.1"/>
    <category term="cpe:/a:flashtux:weechat:0.3.1.1"/>
    <category term="cpe:/a:flashtux:weechat:0.3.2"/>
    <category term="cpe:/a:flashtux:weechat:0.3.3"/>
    <category term="cpe:/a:flashtux:weechat:0.3.4"/>
    <category term="cpe:/a:flashtux:weechat:0.3.6"/>
    <category term="cpe:/a:flashtux:weechat:0.3.7"/>
    <category term="cpe:/a:flashtux:weechat:0.3.8"/>
    <category term="cpe:/a:flashtux:weechat:0.3.9"/>
    <category term="cpe:/a:flashtux:weechat:0.3.9.1"/>
    <sec:identifier>CVE-2012-5534</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5450:cms_made_simple: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5450_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5450_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5450_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in lib/filemanager/imagemanager/images.php in CMS Made Simple (CMSMS) 1.11.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that delete arbitrary files via the deld parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5450_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.10.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.11.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.12.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.13"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.2.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.3.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.5.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.6.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.7.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.8.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:0.9.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.0.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.3.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.1.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.11.2 and previous versions"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.2.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3:beta1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.3:beta2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.5.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.5"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.6"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.6.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.7"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.7.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.8.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.2"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.3"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4.1"/>
    <category term="cpe:/a:cmsmadesimple:cms_made_simple:1.9.4.2"/>
    <sec:identifier>CVE-2012-5450</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5367:orangehrm: Multiple SQL injection vulnerabilities in OrangeHRM...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5367_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5367_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5367_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in OrangeHRM 2.7.1 RC 1 allow remote authenticated administrators to execute arbitrary SQL commands via the sortField parameter to (1) viewCustomers, (2) viewPayGrades, or (3) viewSystemUsers in symfony/web/index.php/admin/, as demonstrated using cross-site request forgery (CSRF) attacks.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5367_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:orangehrm:orangehrm:2.7.1:rc1"/>
    <sec:identifier>CVE-2012-5367</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3432:xen: The handle_mmio function in arch/x86/hvm/io.c in th...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3432_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3432_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3432_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The handle_mmio function in arch/x86/hvm/io.c in the MMIO operations emulator for Xen 3.3 and 4.x, when running an HVM guest, does not properly reset certain state information between emulation cycles, which allows local guest OS users to cause a denial of service (guest OS crash) via unspecified operations on MMIO regions.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3432_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.3.0"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-3432</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2934:xen: Xen 4.0, and 4.1, when running a 64-bit PV guest on...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2934_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2934_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2934_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 4.0, and 4.1, when running a 64-bit PV guest on &quot;older&quot; AMD CPUs, does not properly protect against a certain AMD processor bug, which allows local guest OS users to cause a denial of service (host hang) via sequential execution of instructions across a non-canonical boundary, a different vulnerability than CVE-2012-0217.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2934_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0:-:%7E%7E%7E%7Ex64%7E"/>
    <category term="cpe:/o:xen:xen:4.1.0:-:%7E%7E%7E%7Ex64%7E"/>
    <sec:identifier>CVE-2012-2934</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1599:joomla!: Joomla! 1.5.x before 1.5.26 does not properly check...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1599_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1599_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1599_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Joomla! 1.5.x before 1.5.26 does not properly check permissions, which allows attackers to obtain sensitive &quot;administrative back end information&quot; via unknown vectors.  NOTE: this might be a duplicate of CVE-2012-1611.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1599_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:1.5.0"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.1"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.10"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.11"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.12"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.13"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.14"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.15"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.15:rc"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.16"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.17"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.18"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.19"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.2"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.20"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.21"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.22"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.23"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.24"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.25"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.3"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.4"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.5"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.6"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.7"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.8"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.9"/>
    <sec:identifier>CVE-2012-1599</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1598:joomla!: Joomla! 1.5.x before 1.5.26 has unspecified impact ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1598_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1598_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1598_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to &quot;insufficient randomness&quot; and a &quot;password reset vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1598_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:1.5.0"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.1"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.10"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.11"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.12"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.13"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.14"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.15"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.15:rc"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.16"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.17"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.18"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.19"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.2"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.20"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.21"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.22"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.23"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.24"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.25"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.3"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.4"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.5"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.6"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.7"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.8"/>
    <category term="cpe:/a:joomla:joomla%21:1.5.9"/>
    <sec:identifier>CVE-2012-1598</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0218:xen: Xen 3.4, 4.0, and 4.1, when the guest OS has not re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0218_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0218_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0218_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-04T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 3.4, 4.0, and 4.1, when the guest OS has not registered a handler for a syscall or sysenter instruction, does not properly clear a flag for exception injection when injecting a General Protection Fault, which allows local PV guest OS users to cause a denial of service (guest crash) by later triggering an exception that would normally be handled within Xen.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0218_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <sec:identifier>CVE-2012-0218</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005587:Android &#29992; QuIC Graphics KGSL &#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005587_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005587_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005587_AD_1.html</id>
    <published>2012-12-03T15:22:31+09:00</published>
    <updated>2012-12-03T15:22:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Qualcomm Innovation Center (QuIC) Graphics KGSL カーネルモードドライバの drivers/gpu/msm/kgsl.c には、サービス運用妨害 (NULL ポインタデリファレンス) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005587_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android"/>
    <sec:identifier>JVNDB-2012-005587</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005586:Android &#29992; QuIC Diagnostics &#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005586_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005586_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005586_AD_1.html</id>
    <published>2012-12-03T15:21:51+09:00</published>
    <updated>2012-12-03T15:21:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Qualcomm Innovation Center (QuIC) Diagnostics カーネルモードドライバの diagchar_core.c には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005586_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android"/>
    <sec:identifier>JVNDB-2012-005586</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005585:Android &#29992; QuIC Diagnostics &#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005585_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005585_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005585_AD_1.html</id>
    <published>2012-12-03T15:21:07+09:00</published>
    <updated>2012-12-03T15:21:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Qualcomm Innovation Center (QuIC) Diagnostics カーネルモードドライバの diagchar_core.c には、任意のコードを実行される、またはサービス運用妨害 (不正なポインタデリファレンス) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005585_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android"/>
    <sec:identifier>JVNDB-2012-005585</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5615:mariadb, mysql: MySQL 5.5.19 and possibly other versions, and Maria...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5615_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5615_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5615_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a, 5.3.11, 5.2.13, 5.1.66, and possibly other versions, generates different error messages with different time delays depending on whether a user name exists, which allows remote attackers to enumerate valid usernames.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5615_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb:5.1.66"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.13"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.11"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.28a"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <sec:identifier>CVE-2012-5615</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5614:mariadb, mysql: MySQL 5.5.19 and possibly other versions, and Maria...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5614_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5614_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5614_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, allows remote authenticated users to cause a denial of service (mysqld crash) via a SELECT command with an UpdateXML command containing XML with a large number of unique, nested elements.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5614_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb:5.5.28a"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <sec:identifier>CVE-2012-5614</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5613:mariadb, mysql: ** DISPUTED **  MySQL 5.5.19 and possibly other ver...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5613_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5613_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5613_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
** DISPUTED **  MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, when configured to assign the FILE privilege to users who should not have administrative privileges, allows remote authenticated users to gain privileges by leveraging the FILE privilege to create files as the MySQL administrator.  NOTE: the vendor disputes this issue, stating that this is only a vulnerability when the administrator does not follow recommendations in the product's instal...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5613_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb:5.5.28a"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <sec:identifier>CVE-2012-5613</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5612:mariadb, mysql: Heap-based buffer overflow in MySQL 5.5.19 and poss...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5612_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5612_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5612_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, allows remote authenticated users to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code, as demonstrated using certain variations of the (1) USE, (2) SHOW TABLES, (3) DESCRIBE, (4) SHOW FIELDS FROM, (5) SHOW COLUMNS FROM, (6) SHOW INDEX FROM, (7) CREATE TABLE, (8) DROP TABLE, (9) ALTER TABLE, (10) DELETE FROM, (11) UPDATE, and (12) S...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5612_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb:5.5.28a"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/o:linux:linux"/>
    <sec:identifier>CVE-2012-5612</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5611:mariadb, mysql: Stack-based buffer overflow in MySQL 5.5.19, 5.1.53...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5611_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5611_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5611_AD_1.html</id>
    <published>2012-12-03T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in MySQL 5.5.19, 5.1.53, and possibly other versions, and MariaDB 5.5.2.x before 5.5.28a, 5.3.x before 5.3.11, 5.2.x before 5.2.13 and 5.1.x before 5.1.66, allows remote authenticated users to execute arbitrary code via a long argument to the GRANT FILE command.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5611_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mariadb:mariadb:5.1.41"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.42"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.44"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.47"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.49"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.50"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.51"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.53"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.55"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.60"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.61"/>
    <category term="cpe:/a:mariadb:mariadb:5.1.62"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.0"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.1"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.10"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.11"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.12"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.2"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.3"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.4"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.5"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.6"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.7"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.8"/>
    <category term="cpe:/a:mariadb:mariadb:5.2.9"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.0"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.1"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.10"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.2"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.3"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.4"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.5"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.6"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.7"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.8"/>
    <category term="cpe:/a:mariadb:mariadb:5.3.9"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.20"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.21"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.22"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.23"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.24"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.25"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.27"/>
    <category term="cpe:/a:mariadb:mariadb:5.5.28"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/o:linux:linux"/>
    <sec:identifier>CVE-2012-5611</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6063:libssh: Double free vulnerability in the sftp_mkdir functio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6063_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6063_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6063_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in the sftp_mkdir function in sftp.c in libssh before 0.5.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors, a different vector than CVE-2012-4559.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6063_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh:0.4.7"/>
    <category term="cpe:/a:libssh:libssh:0.4.8"/>
    <category term="cpe:/a:libssh:libssh:0.5.0"/>
    <category term="cpe:/a:libssh:libssh:0.5.0:rc1"/>
    <category term="cpe:/a:libssh:libssh:0.5.1"/>
    <category term="cpe:/a:libssh:libssh:0.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-6063</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4571:keyring: Python Keyring 0.9.1 does not securely initialize t...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4571_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4571_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4571_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4571_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:python:keyring:0.9.1"/>
    <sec:identifier>CVE-2012-4571</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4562:libssh: Multiple integer overflows in libssh before 0.5.3 a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4562_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4562_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4562_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple integer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (infinite loop or crash) and possibly execute arbitrary code via unspecified vectors, which triggers a buffer overflow, infinite loop, or possibly some other unspecified vulnerabilities.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4562_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh:0.4.7"/>
    <category term="cpe:/a:libssh:libssh:0.4.8"/>
    <category term="cpe:/a:libssh:libssh:0.5.0"/>
    <category term="cpe:/a:libssh:libssh:0.5.0:rc1"/>
    <category term="cpe:/a:libssh:libssh:0.5.1"/>
    <category term="cpe:/a:libssh:libssh:0.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-4562</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4561:libssh: The (1) publickey_make_dss, (2) publickey_make_rsa,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4561_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4561_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4561_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) publickey_make_dss, (2) publickey_make_rsa, (3) signature_from_string, (4) ssh_do_sign, and (5) ssh_sign_session_id functions in keys.c in libssh before 0.5.3 free &quot;an invalid pointer on an error path,&quot; which might allow remote attackers cause a denial of service (crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4561_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh:0.4.7"/>
    <category term="cpe:/a:libssh:libssh:0.4.8"/>
    <category term="cpe:/a:libssh:libssh:0.5.0"/>
    <category term="cpe:/a:libssh:libssh:0.5.0:rc1"/>
    <category term="cpe:/a:libssh:libssh:0.5.1"/>
    <category term="cpe:/a:libssh:libssh:0.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-4561</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4560:libssh: Multiple buffer overflows in libssh before 0.5.3 al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4560_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4560_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4560_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple buffer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4560_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh:0.4.7"/>
    <category term="cpe:/a:libssh:libssh:0.4.8"/>
    <category term="cpe:/a:libssh:libssh:0.5.0"/>
    <category term="cpe:/a:libssh:libssh:0.5.0:rc1"/>
    <category term="cpe:/a:libssh:libssh:0.5.1"/>
    <category term="cpe:/a:libssh:libssh:0.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-4560</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4559:libssh: Multiple double free vulnerabilities in the (1) age...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4559_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4559_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4559_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple double free vulnerabilities in the (1) agent_sign_data function in agent.c, (2) channel_request function in channels.c, (3) ssh_userauth_pubkey function in auth.c, (4) sftp_parse_attr_3 function in sftp.c, and (5) try_publickey_from_file function in keyfiles.c in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4559_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libssh:libssh:0.4.7"/>
    <category term="cpe:/a:libssh:libssh:0.4.8"/>
    <category term="cpe:/a:libssh:libssh:0.5.0"/>
    <category term="cpe:/a:libssh:libssh:0.5.0:rc1"/>
    <category term="cpe:/a:libssh:libssh:0.5.1"/>
    <category term="cpe:/a:libssh:libssh:0.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-4559</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4551:libunity-webapps: Use-after-free vulnerability in libunity-webapps be...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4551_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4551_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4551_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in libunity-webapps before 2.4.1 allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via a crafted web site, related to &quot;certain hash tables.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4551_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:0.02"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:0.2.1"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:0.3"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:0.3.1"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.0"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.0.1"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.1"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.1"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.2"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.3"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.4"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.5"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.6"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.7"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.8"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.3.9"/>
    <category term="cpe:/a:ps_project_management_team:libunity-webapps:2.4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4551</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4479:drag_&amp;_drop_gallery: SQL injection vulnerability in the Drag &amp; Drop Gall...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4479_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4479_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4479_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Drag &amp; Drop Gallery module 6.x for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4479_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery:6.x-1.5"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4479</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4478:drag_&amp;_drop_gallery: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4478_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4478_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4478_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the Drag &amp; Drop Gallery module 6.x for Drupal allows remote attackers to hijack the authentication of administrators.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4478_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery:6.x-1.5"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4478</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4477:drag_&amp;_drop_gallery: Unspecified vulnerability in the Drag &amp; Drop Galler...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4477_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4477_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4477_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Drag &amp; Drop Gallery module 6.x for Drupal allows remote attackers to bypass access restrictions via unknown attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4477_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery:6.x-1.5"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4477</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4476:drag_&amp;_drop_gallery: Cross-site scripting (XSS) vulnerability in the Dra...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4476_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4476_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4476_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Drag &amp; Drop Gallery module 6.x for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4476_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery:6.x-1.5"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4476</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4475:security_questions: The Security Questions module for Drupal 6.x-1.x be...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4475_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4475_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4475_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Security Questions module for Drupal 6.x-1.x before 6.x-1.1 and 7.x-1.x before 7.x-1.1 does not properly restrict access, which allows remote attackers to edit an arbitrary user's questions and answers via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4475_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:security_questions_project:security_questions:6.x-1.0"/>
    <category term="cpe:/a:security_questions_project:security_questions:6.x-1.x:dev"/>
    <category term="cpe:/a:security_questions_project:security_questions:7.x-1.0"/>
    <category term="cpe:/a:security_questions_project:security_questions:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4475</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4474:dennis_blake: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4474_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4474_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4474_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the Colorbox Node module 7.x-2.x before 7.x-2.2 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4474_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:colorbox_node:dennis_blake:7.x-2.0"/>
    <category term="cpe:/a:colorbox_node:dennis_blake:7.x-2.1"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4474</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4473:restrict_node_page_view: The Restrict node page view module 7.x-1.x before 7...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4473_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4473_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4473_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Restrict node page view module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the &quot;view any node page&quot; or &quot;view any node {type} page&quot; permission to access unpublished nodes via a direct request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4473_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:christian_johansson:restrict_node_page_view:7.x-1.0"/>
    <category term="cpe:/a:christian_johansson:restrict_node_page_view:7.x-1.1"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4473</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4472:drag_&amp;_drop_gallery: Unrestricted file upload vulnerability in upload.ph...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4472_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4472_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4472_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unrestricted file upload vulnerability in upload.php in the Drag &amp; Drop Gallery module 6.x-1.5 and earlier for Drupal allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension followed by a safe extension, then accessing it via a direct request to the directory specified by the filedir parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4472_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:david_alkire:drag_%26_drop_gallery:6.x-1.5 and previous versions"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4472</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4471:search_autocomplete: The Search Autocomplete module 7.x-2.x before 7.x-2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4471_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4471_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4471_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Search Autocomplete module 7.x-2.x before 7.x-2.4 for Drupal does not properly restrict access to the module admin page, which allows remote attackers to disable an autocompletion or change the priority order via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4471_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dominique_clause:search_autocomplete:7.x-2.0"/>
    <category term="cpe:/a:dominique_clause:search_autocomplete:7.x-2.1"/>
    <category term="cpe:/a:dominique_clause:search_autocomplete:7.x-2.3"/>
    <category term="cpe:/a:dominique_clause:search_autocomplete:7.x-2.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4471</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4470:listhandler: The Listhandler module 6.x-1.x before 6.x-1.1 for D...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4470_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4470_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4470_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Listhandler module 6.x-1.x before 6.x-1.1 for Drupal does not properly check permissions when importing emails, which allows remote comment authors to bypass access restrictions and possibly have other unspecified impact.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4470_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:philip_ludlam:listhandler:6.x-1.0"/>
    <sec:identifier>CVE-2012-4470</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4469:hashcash: Cross-site scripting (XSS) vulnerability in the Has...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4469_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4469_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4469_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Hashcash module 6.x-2.x before 6.x-2.6 and 7.x-2.x before 7.x-2.2 for Drupal, when &quot;Log failed hashcash&quot; is enabled, allows remote attackers to inject arbitrary web script or HTML via an invalid token, which is not properly handled when administrators use the Database logging module.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4469_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.0"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.1"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.2"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.3"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.4"/>
    <category term="cpe:/a:simon_rycroft:hashcash:6.x-2.5"/>
    <category term="cpe:/a:simon_rycroft:hashcash:7.x-2.0"/>
    <category term="cpe:/a:simon_rycroft:hashcash:7.x-2.1"/>
    <sec:identifier>CVE-2012-4469</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4468:privatemsg: Cross-site scripting (XSS) vulnerability in the Pri...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4468_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4468_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4468_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Privatemsg module 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via a user name in a private message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4468_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.0"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.0:alpha1"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.0:beta1"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.1"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.2"/>
    <category term="cpe:/a:privatemsg_project:privatemsg:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4468</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5568:tomcat: Apache Tomcat through 7.0.x allows remote attackers...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5568_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5568_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5568_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apache Tomcat through 7.0.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5568_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:1.1.3"/>
    <category term="cpe:/a:apache:tomcat:3.0"/>
    <category term="cpe:/a:apache:tomcat:3.1"/>
    <category term="cpe:/a:apache:tomcat:3.1.1"/>
    <category term="cpe:/a:apache:tomcat:3.2"/>
    <category term="cpe:/a:apache:tomcat:3.2.1"/>
    <category term="cpe:/a:apache:tomcat:3.2.2"/>
    <category term="cpe:/a:apache:tomcat:3.2.2:beta2"/>
    <category term="cpe:/a:apache:tomcat:3.2.3"/>
    <category term="cpe:/a:apache:tomcat:3.2.4"/>
    <category term="cpe:/a:apache:tomcat:3.3"/>
    <category term="cpe:/a:apache:tomcat:3.3.1"/>
    <category term="cpe:/a:apache:tomcat:3.3.1a"/>
    <category term="cpe:/a:apache:tomcat:3.3.2"/>
    <category term="cpe:/a:apache:tomcat:4.0.0"/>
    <category term="cpe:/a:apache:tomcat:4.0.1"/>
    <category term="cpe:/a:apache:tomcat:4.0.2"/>
    <category term="cpe:/a:apache:tomcat:4.0.3"/>
    <category term="cpe:/a:apache:tomcat:4.0.4"/>
    <category term="cpe:/a:apache:tomcat:4.0.5"/>
    <category term="cpe:/a:apache:tomcat:4.0.6"/>
    <category term="cpe:/a:apache:tomcat:4.1.0"/>
    <category term="cpe:/a:apache:tomcat:4.1.1"/>
    <category term="cpe:/a:apache:tomcat:4.1.10"/>
    <category term="cpe:/a:apache:tomcat:4.1.12"/>
    <category term="cpe:/a:apache:tomcat:4.1.15"/>
    <category term="cpe:/a:apache:tomcat:4.1.2"/>
    <category term="cpe:/a:apache:tomcat:4.1.24"/>
    <category term="cpe:/a:apache:tomcat:4.1.28"/>
    <category term="cpe:/a:apache:tomcat:4.1.29"/>
    <category term="cpe:/a:apache:tomcat:4.1.3"/>
    <category term="cpe:/a:apache:tomcat:4.1.31"/>
    <category term="cpe:/a:apache:tomcat:4.1.36"/>
    <category term="cpe:/a:apache:tomcat:4.1.3:beta"/>
    <category term="cpe:/a:apache:tomcat:4.1.9:beta"/>
    <category term="cpe:/a:apache:tomcat:5.0.0"/>
    <category term="cpe:/a:apache:tomcat:5.0.1"/>
    <category term="cpe:/a:apache:tomcat:5.0.10"/>
    <category term="cpe:/a:apache:tomcat:5.0.11"/>
    <category term="cpe:/a:apache:tomcat:5.0.12"/>
    <category term="cpe:/a:apache:tomcat:5.0.13"/>
    <category term="cpe:/a:apache:tomcat:5.0.14"/>
    <category term="cpe:/a:apache:tomcat:5.0.15"/>
    <category term="cpe:/a:apache:tomcat:5.0.16"/>
    <category term="cpe:/a:apache:tomcat:5.0.17"/>
    <category term="cpe:/a:apache:tomcat:5.0.18"/>
    <category term="cpe:/a:apache:tomcat:5.0.19"/>
    <category term="cpe:/a:apache:tomcat:5.0.2"/>
    <category term="cpe:/a:apache:tomcat:5.0.21"/>
    <category term="cpe:/a:apache:tomcat:5.0.22"/>
    <category term="cpe:/a:apache:tomcat:5.0.23"/>
    <category term="cpe:/a:apache:tomcat:5.0.24"/>
    <category term="cpe:/a:apache:tomcat:5.0.25"/>
    <category term="cpe:/a:apache:tomcat:5.0.26"/>
    <category term="cpe:/a:apache:tomcat:5.0.27"/>
    <category term="cpe:/a:apache:tomcat:5.0.28"/>
    <category term="cpe:/a:apache:tomcat:5.0.29"/>
    <category term="cpe:/a:apache:tomcat:5.0.3"/>
    <category term="cpe:/a:apache:tomcat:5.0.30"/>
    <category term="cpe:/a:apache:tomcat:5.0.4"/>
    <category term="cpe:/a:apache:tomcat:5.0.5"/>
    <category term="cpe:/a:apache:tomcat:5.0.6"/>
    <category term="cpe:/a:apache:tomcat:5.0.7"/>
    <category term="cpe:/a:apache:tomcat:5.0.8"/>
    <category term="cpe:/a:apache:tomcat:5.0.9"/>
    <category term="cpe:/a:apache:tomcat:5.5.0"/>
    <category term="cpe:/a:apache:tomcat:5.5.1"/>
    <category term="cpe:/a:apache:tomcat:5.5.10"/>
    <category term="cpe:/a:apache:tomcat:5.5.11"/>
    <category term="cpe:/a:apache:tomcat:5.5.12"/>
    <category term="cpe:/a:apache:tomcat:5.5.13"/>
    <category term="cpe:/a:apache:tomcat:5.5.14"/>
    <category term="cpe:/a:apache:tomcat:5.5.15"/>
    <category term="cpe:/a:apache:tomcat:5.5.16"/>
    <category term="cpe:/a:apache:tomcat:5.5.17"/>
    <category term="cpe:/a:apache:tomcat:5.5.18"/>
    <category term="cpe:/a:apache:tomcat:5.5.19"/>
    <category term="cpe:/a:apache:tomcat:5.5.2"/>
    <category term="cpe:/a:apache:tomcat:5.5.20"/>
    <category term="cpe:/a:apache:tomcat:5.5.21"/>
    <category term="cpe:/a:apache:tomcat:5.5.22"/>
    <category term="cpe:/a:apache:tomcat:5.5.23"/>
    <category term="cpe:/a:apache:tomcat:5.5.24"/>
    <category term="cpe:/a:apache:tomcat:5.5.25"/>
    <category term="cpe:/a:apache:tomcat:5.5.26"/>
    <category term="cpe:/a:apache:tomcat:5.5.27"/>
    <category term="cpe:/a:apache:tomcat:5.5.28"/>
    <category term="cpe:/a:apache:tomcat:5.5.29"/>
    <category term="cpe:/a:apache:tomcat:5.5.3"/>
    <category term="cpe:/a:apache:tomcat:5.5.30"/>
    <category term="cpe:/a:apache:tomcat:5.5.31"/>
    <category term="cpe:/a:apache:tomcat:5.5.32"/>
    <category term="cpe:/a:apache:tomcat:5.5.33"/>
    <category term="cpe:/a:apache:tomcat:5.5.34"/>
    <category term="cpe:/a:apache:tomcat:5.5.35"/>
    <category term="cpe:/a:apache:tomcat:5.5.4"/>
    <category term="cpe:/a:apache:tomcat:5.5.5"/>
    <category term="cpe:/a:apache:tomcat:5.5.6"/>
    <category term="cpe:/a:apache:tomcat:5.5.7"/>
    <category term="cpe:/a:apache:tomcat:5.5.8"/>
    <category term="cpe:/a:apache:tomcat:5.5.9"/>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28 and previous versions"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-5568</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4834:websphere_portal: Directory traversal vulnerability in LayerLoader.js...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4834_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4834_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4834_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in LayerLoader.jsp in the theme component in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 before CF19 and 8.0 before CF03 allows remote attackers to read arbitrary files via a crafted URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4834_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.1:cf002"/>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.1:cf003 and previous versions"/>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.1:cf019"/>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.2 and previous versions"/>
    <category term="cpe:/a:ibm:websphere_portal:7.0.0.2:cf019"/>
    <category term="cpe:/a:ibm:websphere_portal:8.0.0.0 and previous versions"/>
    <sec:identifier>CVE-2012-4834</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4557:apache_http_server: The mod_proxy_ajp module in the Apache HTTP Server ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4557_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4557_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4557_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-12-03T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4557_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:apache_http_server:2.2.12"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.13"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.14"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.15"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.16"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.17"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.18"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.19"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.20"/>
    <category term="cpe:/a:apache:apache_http_server:2.2.21 and previous versions"/>
    <sec:identifier>CVE-2012-4557</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005584:Autonomy Keyview IDOL &#12521;&#12452;&#12502;&#12521;&#12522;&#12395;&#35079;&#25968;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005584_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005584_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005584_AD_1.html</id>
    <published>2012-11-30T17:52:44+09:00</published>
    <updated>2012-11-30T17:52:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Autonomy KeyView IDOL ライブラリには、ファイル解析の処理に複数の脆弱性が存在します。  Autonomy KeyView IDOL は、1000 以上のファイル形式をデコードするライブラリで、多数のアプリケーションで使用されています。Autonomy KeyView IDOL ライブラリには、メモリ破壊や任意のコード実行など複数の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005584_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:autonomy:autonomy_keyview_idol"/>
    <sec:identifier>JVNDB-2012-005584</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005583:Performance Co-Pilot &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005583_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005583_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005583_AD_1.html</id>
    <published>2012-11-30T12:02:17+09:00</published>
    <updated>2012-11-30T12:02:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Performance Co-Pilot (PCP) の (1) pcmd および (2) pmlogger init スクリプトには、任意のファイルを上書される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005583_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sgi:performance_co-pilot"/>
    <sec:identifier>JVNDB-2012-005583</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005582:Tivoli Endpoint Manager for Remote Control Broker &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12522;&#12477;&#12540;&#12473;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005582_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005582_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005582_AD_1.html</id>
    <published>2012-11-30T12:01:46+09:00</published>
    <updated>2012-11-30T12:01:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tivoli Endpoint Manager for Remote Control Broker には、サービス運用妨害 (リソース消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005582_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_endpoint_manager"/>
    <sec:identifier>JVNDB-2012-005582</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005581:HP Integrated Lights-Out 3 &#12362;&#12424;&#12403; Integrated Lights-Out 4 &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005581_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005581_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005581_AD_1.html</id>
    <published>2012-11-30T12:01:07+09:00</published>
    <updated>2012-11-30T12:01:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Integrated Lights-Out 3 および Integrated Lights-Out 4 のファームウェアには、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005581_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:integrated_lights-out_3_firmware"/>
    <category term="cpe:/o:hp:integrated_lights-out_4_firmware"/>
    <sec:identifier>JVNDB-2012-005581</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000105:&#35079;&#25968;&#12398;&#20140;&#12475;&#12521;&#35069;&#25658;&#24111;&#31471;&#26411;&#12395;&#12362;&#12369;&#12427;&#12513;&#12540;&#12523;&#21463;&#20449;&#26178;&#12395;&#20877;&#36215;&#21205;&#12377;&#12427;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000105_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000105_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000105_AD_1.html</id>
    <published>2012-11-30T12:01:05+09:00</published>
    <updated>2012-11-30T12:01:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
京セラ株式会社の提供する複数の携帯端末には、通常とは異なるフォーマットで作成されたメールを受信した場合、携帯端末が再起動する問題が存在します。 本現象が発生した場合、メールを受信しようとすると、メールの受信が完了する前に必ず再起動します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 清水 理史 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000105_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:misc:ah-k3001v"/>
    <category term="cpe:/h:misc:ah-k3002v"/>
    <category term="cpe:/h:misc:wx300k"/>
    <category term="cpe:/h:misc:wx310k"/>
    <category term="cpe:/h:misc:wx320k"/>
    <category term="cpe:/h:misc:wx320kr"/>
    <sec:identifier>JVNDB-2012-000105</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5174:ah-k3001v, ah-k3002v, xw300k, xw310k, xw320k, xw320kr: The KYOCERA AH-K3001V, AH-K3002V, WX300K, WX310K, W...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5174_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5174_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5174_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-11-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The KYOCERA AH-K3001V, AH-K3002V, WX300K, WX310K, WX320K, and WX320KR devices allow remote attackers to cause a denial of service (persistent reboot) via an e-mail message in an invalid format.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5174_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:kyocera:ah-k3001v:-"/>
    <category term="cpe:/h:kyocera:ah-k3002v:-"/>
    <category term="cpe:/h:kyocera:xw300k:-"/>
    <category term="cpe:/h:kyocera:xw310k:-"/>
    <category term="cpe:/h:kyocera:xw320k:-"/>
    <category term="cpe:/h:kyocera:xw320kr:-"/>
    <sec:identifier>CVE-2012-5174</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4222:android: drivers/gpu/msm/kgsl.c in the Qualcomm Innovation C...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4222_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4222_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4222_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-11-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
drivers/gpu/msm/kgsl.c in the Qualcomm Innovation Center (QuIC) Graphics KGSL kernel-mode driver for Android 2.3 through 4.2 allows remote attackers to cause a denial of service (NULL pointer dereference) via an application that uses crafted arguments in a kgsl_ioctl call.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4222_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:google:android:4.2"/>
    <sec:identifier>CVE-2012-4222</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4221:android: Integer overflow in diagchar_core.c in the Qualcomm...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4221_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4221_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4221_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-11-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver for Android 2.3 through 4.2 allows remote attackers to execute arbitrary code or cause a denial of service via an application that uses crafted arguments in a diagchar_ioctl call.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4221_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:google:android:4.2"/>
    <sec:identifier>CVE-2012-4221</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4220:android: diagchar_core.c in the Qualcomm Innovation Center (...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4220_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4220_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4220_AD_1.html</id>
    <published>2012-11-30T00:00:00+09:00</published>
    <updated>2012-11-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver for Android 2.3 through 4.2 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference) via an application that uses crafted arguments in a diagchar_ioctl call.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4220_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:google:android:4.2"/>
    <sec:identifier>CVE-2012-4220</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005580:Google CityHash &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005580_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005580_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005580_AD_1.html</id>
    <published>2012-11-29T16:16:18+09:00</published>
    <updated>2012-11-29T16:16:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google CityHash は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005580_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:cityhash"/>
    <sec:identifier>JVNDB-2012-005580</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005579:Oracle Java SE &#12362;&#12424;&#12403; OpenJDK &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005579_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005579_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005579_AD_1.html</id>
    <published>2012-11-29T16:12:20+09:00</published>
    <updated>2012-11-29T16:12:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE および OpenJDK は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-2739 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005579_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:jdk"/>
    <category term="cpe:/a:oracle:jre"/>
    <category term="cpe:/a:oracle:openjdk"/>
    <sec:identifier>JVNDB-2012-005579</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005203:Rubinius &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005203_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005203_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005203_AD_1.html</id>
    <published>2012-11-29T16:10:20+09:00</published>
    <updated>2012-11-29T16:10:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Rubinius は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005203_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rubinius:rubinius"/>
    <sec:identifier>JVNDB-2011-005203</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005202:Ruby &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005202_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005202_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005202_AD_1.html</id>
    <published>2012-11-29T16:08:41+09:00</published>
    <updated>2012-11-29T16:08:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ruby は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2011-4815 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005202_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ruby-lang:ruby"/>
    <sec:identifier>JVNDB-2011-005202</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005201:JRuby &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005201_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005201_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005201_AD_1.html</id>
    <published>2012-11-29T16:05:37+09:00</published>
    <updated>2012-11-29T16:05:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JRuby は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2011-4838 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005201_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jruby:jruby"/>
    <sec:identifier>JVNDB-2011-005201</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005578:Oracle Java SE &#12362;&#12424;&#12403; OpenJDK &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005578_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005578_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005578_AD_1.html</id>
    <published>2012-11-29T16:03:41+09:00</published>
    <updated>2012-11-29T16:03:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE および OpenJDK は、ハッシュ衝突を想定した制限を適切に行わずにハッシュ値を算出するため、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005578_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:jdk"/>
    <category term="cpe:/a:oracle:jre"/>
    <category term="cpe:/a:oracle:openjdk"/>
    <sec:identifier>JVNDB-2012-005578</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005577:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005577_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005577_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005577_AD_1.html</id>
    <published>2012-11-29T11:48:02+09:00</published>
    <updated>2012-11-29T11:48:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、INPUT 要素を処理する際、不特定の変数のキャストを適切に扱わないため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005577_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005577</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005576:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005576_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005576_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005576_AD_1.html</id>
    <published>2012-11-29T11:41:37+09:00</published>
    <updated>2012-11-29T11:41:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005576_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005576</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005575:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; libxml2 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005575_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005575_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005575_AD_1.html</id>
    <published>2012-11-29T11:41:08+09:00</published>
    <updated>2012-11-29T11:41:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される libxml2 の parser.c 内の xmlParseAttValueComplex 関数には、サービス運用妨害 (DoS) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005575_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:xmlsoft:libxml2"/>
    <sec:identifier>JVNDB-2012-005575</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005574:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005574_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005574_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005574_AD_1.html</id>
    <published>2012-11-29T11:39:23+09:00</published>
    <updated>2012-11-29T11:39:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005574_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005574</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005573:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005573_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005573_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005573_AD_1.html</id>
    <published>2012-11-29T11:38:35+09:00</published>
    <updated>2012-11-29T11:38:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005573_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005573</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005572:Mac OS X &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005572_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005572_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005572_AD_1.html</id>
    <published>2012-11-29T11:38:05+09:00</published>
    <updated>2012-11-29T11:38:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で稼働する Google Chrome は、インテル GPU ドライバにおける不正なレンダリング動作を適切に抑制しないため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005572_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005572</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005571:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Skia &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005571_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005571_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005571_AD_1.html</id>
    <published>2012-11-29T11:37:15+09:00</published>
    <updated>2012-11-29T11:37:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される Skia には、サービス運用妨害 (out-of-bounds read) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005571_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005571</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005570:EMC Smarts Network Configuration Manager &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005570_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005570_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005570_AD_1.html</id>
    <published>2012-11-29T11:35:28+09:00</published>
    <updated>2012-11-29T11:35:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC Smarts Network Configuration Manager (NCM) は、資格情報にハードコーディングされた暗号鍵を使用するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005570_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:it_operations_intelligence"/>
    <sec:identifier>JVNDB-2012-005570</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005569:EMC Smarts Network Configuration Manager &#12398;&#12487;&#12501;&#12457;&#12523;&#12488;&#35373;&#23450;&#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005569_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005569_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005569_AD_1.html</id>
    <published>2012-11-29T11:32:36+09:00</published>
    <updated>2012-11-29T11:32:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC Smarts Network Configuration Manager (NCM) のデフォルト設定には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005569_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:it_operations_intelligence"/>
    <sec:identifier>JVNDB-2012-005569</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005568:EMC RSA Adaptive Authentication On-Premise &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005568_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005568_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005568_AD_1.html</id>
    <published>2012-11-29T11:31:04+09:00</published>
    <updated>2012-11-29T11:31:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA Adaptive Authentication On-Premise (AAOP) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005568_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise"/>
    <sec:identifier>JVNDB-2012-005568</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2010-5285:collabtive: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_2.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in admin.php in Collabtive 0.6.5 allows remote attackers to hijack the authentication of administrators for requests that add administrative users via the edituser action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive:0.6.5"/>
    <sec:identifier>CVE-2010-5285</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2010-5284:collabtive: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_2.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive:0.6.5"/>
    <sec:identifier>CVE-2010-5284</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5530:performance_co-pilot: The (1) pcmd and (2) pmlogger init scripts in Perfo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5530_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5530_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5530_AD_1.html</id>
    <published>2012-11-29T00:00:00+09:00</published>
    <updated>2012-11-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temporary file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5530_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.1"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.10"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.11"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.2"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.3"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.4"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.5"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.6"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.7"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.8"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.1.9"/>
    <category term="cpe:/a:sgi:performance_co-pilot:2.2"/>
    <category term="cpe:/a:sgi:performance_co-pilot:3.6.4"/>
    <category term="cpe:/a:sgi:performance_co-pilot:3.6.5"/>
    <category term="cpe:/a:sgi:performance_co-pilot:3.6.6"/>
    <category term="cpe:/a:sgi:performance_co-pilot:3.6.8"/>
    <category term="cpe:/a:sgi:performance_co-pilot:3.6.9 and previous versions"/>
    <sec:identifier>CVE-2012-5530</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4841:tivoli_endpoint_manager: Unspecified vulnerability in Tivoli Endpoint Manage...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4841_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4841_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4841_AD_1.html</id>
    <published>2012-11-29T00:00:00+09:00</published>
    <updated>2012-11-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Tivoli Endpoint Manager for Remote Control Broker 8.2 before 8.2.1-TIV-TEMRC821-IF0002 allows remote attackers to cause a denial of service (resource consumption) via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4841_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_endpoint_manager:8.2"/>
    <sec:identifier>CVE-2012-4841</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3271:integrated_lights-out_3_firmware, integrated_lights-out_4_firmware: Unspecified vulnerability on the HP Integrated Ligh...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3271_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3271_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3271_AD_1.html</id>
    <published>2012-11-29T00:00:00+09:00</published>
    <updated>2012-11-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability on the HP Integrated Lights-Out 3 (aka iLO3) with firmware before 1.50 and Integrated Lights-Out 4 (aka iLO4) with firmware before 1.13 allows remote attackers to obtain sensitive information via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3271_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:hp:integrated_lights-out_3_firmware:1.00"/>
    <category term="cpe:/o:hp:integrated_lights-out_3_firmware:1.05"/>
    <category term="cpe:/o:hp:integrated_lights-out_3_firmware:1.20"/>
    <category term="cpe:/o:hp:integrated_lights-out_3_firmware:1.26 and previous versions"/>
    <category term="cpe:/o:hp:integrated_lights-out_4_firmware:1.05"/>
    <category term="cpe:/o:hp:integrated_lights-out_4_firmware:1.10 and previous versions"/>
    <sec:identifier>CVE-2012-3271</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005567:MikroTik RouterOS &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005567_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005567_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005567_AD_1.html</id>
    <published>2012-11-28T15:05:53+09:00</published>
    <updated>2012-11-28T15:05:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MikroTik RouterOS の winbox サービスには、サービス運用妨害 (CPU 資源の消費) 状態となる、ルータのバージョンを読み込まれる、およびその他の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005567_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:mikrotik:routeros"/>
    <sec:identifier>JVNDB-2012-005567</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005566:Open Solution Quick.Cart &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005566_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005566_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005566_AD_1.html</id>
    <published>2012-11-28T15:05:00+09:00</published>
    <updated>2012-11-28T15:05:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Open Solution Quick.Cart には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005566_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opensolution:quick.cart"/>
    <sec:identifier>JVNDB-2012-005566</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005565:Guitar Pro &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005565_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005565_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005565_AD_1.html</id>
    <published>2012-11-28T15:03:08+09:00</published>
    <updated>2012-11-28T15:03:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Guitar Pro には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005565_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:guitar-pro:guitar_pro"/>
    <sec:identifier>JVNDB-2012-005565</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005564:X7 Chat &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005564_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005564_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005564_AD_1.html</id>
    <published>2012-11-28T15:02:34+09:00</published>
    <updated>2012-11-28T15:02:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
X7 Chat には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005564_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:x7_group:x7_chat"/>
    <sec:identifier>JVNDB-2012-005564</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005563:PHP Enter &#12398; admin/banners.php &#12395;&#12362;&#12369;&#12427; horad.php &#12408;&#12398;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489; &#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005563_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005563_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005563_AD_1.html</id>
    <published>2012-11-28T14:57:14+09:00</published>
    <updated>2012-11-28T14:57:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PHP Enter の admin/banners.php には、静的コードの挿入により、horad.php への任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005563_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpenter:php_enter"/>
    <sec:identifier>JVNDB-2012-005563</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005562:Ramui Forum &#12398; gb/user/index.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005562_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005562_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005562_AD_1.html</id>
    <published>2012-11-28T14:56:38+09:00</published>
    <updated>2012-11-28T14:56:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ramui Forum の gb/user/index.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005562_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ramui:ramui_forum"/>
    <sec:identifier>JVNDB-2012-005562</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005561:Joomla! &#29992; Jstore &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005561_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005561_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005561_AD_1.html</id>
    <published>2012-11-28T14:55:56+09:00</published>
    <updated>2012-11-28T14:55:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用 Jstore (com_jstore) コンポーネントには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005561_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joobi:com_jstore"/>
    <sec:identifier>JVNDB-2012-005561</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005560:Collabtive &#12398; admin.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005560_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005560_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005560_AD_1.html</id>
    <published>2012-11-28T14:32:59+09:00</published>
    <updated>2012-11-28T14:32:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Collabtive の admin.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005560_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive"/>
    <sec:identifier>JVNDB-2012-005560</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005559:Collabtive &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005559_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005559_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005559_AD_1.html</id>
    <published>2012-11-28T14:31:58+09:00</published>
    <updated>2012-11-28T14:31:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Collabtive には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005559_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive"/>
    <sec:identifier>JVNDB-2012-005559</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005558:OpenText ECM &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005558_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005558_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005558_AD_1.html</id>
    <published>2012-11-28T14:30:36+09:00</published>
    <updated>2012-11-28T14:30:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenText ECM (formerly Livelink ECM) には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005558_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opentext:livelink_ecm"/>
    <sec:identifier>JVNDB-2012-005558</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005557:OpenText ECM &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005557_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005557_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005557_AD_1.html</id>
    <published>2012-11-28T14:29:27+09:00</published>
    <updated>2012-11-28T14:29:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenText ECM (formerly Livelink ECM) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005557_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opentext:livelink_ecm"/>
    <sec:identifier>JVNDB-2012-005557</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005556:IBrowser TinyMCE &#12503;&#12521;&#12464;&#12452;&#12531;&#12398; CMScout &#20869;&#12398; ibrowser.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005556_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005556_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005556_AD_1.html</id>
    <published>2012-11-28T14:27:53+09:00</published>
    <updated>2012-11-28T14:27:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBrowser TinyMCE プラグインの CMScout 内の ibrowser.php は、magic_quotes_gpc が無効になっている場合、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005556_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:net4visions:ibrowser"/>
    <sec:identifier>JVNDB-2012-005556</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005555:Joomla! &#29992; CBE &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005555_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005555_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005555_AD_1.html</id>
    <published>2012-11-28T14:26:36+09:00</published>
    <updated>2012-11-28T14:26:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用 Community Builder Enhanced (CBE) (com_cbe) コンポーネントには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005555_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla-cbe:com_cbe"/>
    <sec:identifier>JVNDB-2012-005555</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005554:M-Player &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005554_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005554_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005554_AD_1.html</id>
    <published>2012-11-28T14:23:07+09:00</published>
    <updated>2012-11-28T14:23:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
M-Player には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005554_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mjsware:m-player"/>
    <sec:identifier>JVNDB-2012-005554</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005553:PHP-Fusion &#12398; downloads.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005553_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005553_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005553_AD_1.html</id>
    <published>2012-11-28T14:21:50+09:00</published>
    <updated>2012-11-28T14:21:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PHP-Fusion の downloads.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005553_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:php-fusion:php-fusion"/>
    <sec:identifier>JVNDB-2012-005553</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005552:GPSMapEdit &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005552_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005552_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005552_AD_1.html</id>
    <published>2012-11-28T14:20:15+09:00</published>
    <updated>2012-11-28T14:20:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GPSMapEdit には、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005552_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:geopainting:gpsmapedit"/>
    <sec:identifier>JVNDB-2012-005552</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005551:GreenBrowser &#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005551_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005551_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005551_AD_1.html</id>
    <published>2012-11-28T14:19:27+09:00</published>
    <updated>2012-11-28T14:19:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GreenBrowser には、メモリを二重に解放する不備があるため、サーチバーによるキーワード検索 (F6 キー) が機能する場合、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005551_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:more_quick_tools:greenbrowser"/>
    <sec:identifier>JVNDB-2012-005551</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005550:File King Advanced File Managemen &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005550_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005550_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005550_AD_1.html</id>
    <published>2012-11-28T11:47:30+09:00</published>
    <updated>2012-11-28T11:47:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
File King Advanced File Managemen の users.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005550_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:convergine:file_king_advanced_file_management"/>
    <sec:identifier>JVNDB-2012-005550</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005549:YABSoft Advanced Image Hosting Script &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005549_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005549_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005549_AD_1.html</id>
    <published>2012-11-28T11:46:29+09:00</published>
    <updated>2012-11-28T11:46:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
YABSoft Advanced Image Hosting (AIH) Script の view_comments.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005549_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yabsoft:advanced_image_hosting_script"/>
    <sec:identifier>JVNDB-2012-005549</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005548:razorCMS &#12398; admin/core/admin_func.php &#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12434;&#38322;&#35239;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005548_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005548_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005548_AD_1.html</id>
    <published>2012-11-28T11:45:47+09:00</published>
    <updated>2012-11-28T11:45:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
razorCMS の admin/core/admin_func.php は、特定の管理者向けディレクトリとファイルへのアクセスを適切に制限しないため、ファイルを閲覧、編集、リネーム、移動、コピー、および削除される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005548_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms"/>
    <sec:identifier>JVNDB-2012-005548</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5136:chrome: Google Chrome before 23.0.1271.91 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5136_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5136_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5136_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.91 does not properly perform a cast of an unspecified variable during handling of the INPUT element, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted HTML document.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5136_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5136</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5135:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5135_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5135_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5135_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to printing.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5135_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5135</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5134:chrome, libxml2: Heap-based buffer underflow in the xmlParseAttValue...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5134_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5134_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5134_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5134_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.7.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:1.8.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.0.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.1.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.1.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.0:beta"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.2.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.3.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.15"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.17"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.18"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.19"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.20"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.21"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.22"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.23"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.24"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.25"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.26"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.27"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.28"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.29"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.30"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.4.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.10"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.5.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.11"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.12"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.13"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.14"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.16"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.17"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.18"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.20"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.22"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.26"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.27"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.30"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.32"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.8"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.6.9"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.0"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.1"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.2"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.3"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.4"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.5"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.6"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.7.7"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.9.0 and previous versions"/>
    <category term="cpe:/a:xmlsoft:libxml2:2.9.0:rc1"/>
    <sec:identifier>CVE-2012-5134</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5133:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5133_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5133_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5133_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG filters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5133_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5133</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5132:chrome: Google Chrome before 23.0.1271.91 allows remote att...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5132_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5132_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5132_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service (application crash) via a response with chunked transfer coding.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5132_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5132</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5131:chrome: Google Chrome before 23.0.1271.91 on Mac OS X does ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5131_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5131_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5131_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.91 on Mac OS X does not properly mitigate improper rendering behavior in the Intel GPU driver, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5131_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>CVE-2012-5131</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5130:chrome: Skia, as used in Google Chrome before 23.0.1271.91,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5130_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5130_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5130_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Skia, as used in Google Chrome before 23.0.1271.91, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5130_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62"/>
    <category term="cpe:/a:google:chrome:23.0.1271.64"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.83"/>
    <category term="cpe:/a:google:chrome:23.0.1271.84"/>
    <category term="cpe:/a:google:chrome:23.0.1271.85"/>
    <category term="cpe:/a:google:chrome:23.0.1271.86"/>
    <category term="cpe:/a:google:chrome:23.0.1271.87"/>
    <category term="cpe:/a:google:chrome:23.0.1271.88"/>
    <category term="cpe:/a:google:chrome:23.0.1271.89 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5130</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4964:printer_firmware: The Samsung printer firmware before 20121031 has a ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4964_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4964_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4964_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Samsung printer firmware before 20121031 has a hardcoded read-write SNMP community, which makes it easier for remote attackers to obtain administrative access via an SNMP request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4964_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:samsung:printer_firmware:20121030 and previous versions"/>
    <sec:identifier>CVE-2012-4964</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4615:it_operations_intelligence: EMC Smarts Network Configuration Manager (NCM) befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4615_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4615_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4615_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
EMC Smarts Network Configuration Manager (NCM) before 9.1 uses a hardcoded encryption key for the storage of credentials, which allows local users to obtain sensitive information via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4615_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:it_operations_intelligence:9.0 and previous versions"/>
    <sec:identifier>CVE-2012-4615</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4614:it_operations_intelligence: The default configuration of EMC Smarts Network Con...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4614_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4614_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4614_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The default configuration of EMC Smarts Network Configuration Manager (NCM) before 9.1 does not require authentication for database access, which allows remote attackers to have an unspecified impact via a network session.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4614_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:it_operations_intelligence:9.0 and previous versions"/>
    <sec:identifier>CVE-2012-4614</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4611:rsa_adaptive_authentication_on-premise: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4611_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4611_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4611_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Adaptive Authentication On-Premise (AAOP) before 7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4611_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:2.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.3"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp1_patch2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp1_patch3"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp2_patch1"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp3"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp3_p3 and previous versions"/>
    <sec:identifier>CVE-2012-4611</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2012-6042:gpsmapedit: GPSMapEdit 1.1.73.2 allows user-assisted remote att...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_2.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
GPSMapEdit 1.1.73.2 allows user-assisted remote attackers to cause a denial of service (crash) via a long string in a lst file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:geopainting:gpsmapedit:1.1.73.2"/>
    <sec:identifier>CVE-2012-6042</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6051:cityhash: Google CityHash computes hash values without proper...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6051_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6051_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6051_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google CityHash computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6051_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:cityhash:-"/>
    <sec:identifier>CVE-2012-6051</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5373:jdk, jre, openjdk: Oracle Java SE 7 and earlier, and OpenJDK 7 and ear...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5373_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5373_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5373_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5373_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:jdk:1.7.0 and previous versions"/>
    <category term="cpe:/a:oracle:jre:1.7.0 and previous versions"/>
    <category term="cpe:/a:oracle:openjdk:1.7.0 and previous versions"/>
    <sec:identifier>CVE-2012-5373</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5372:rubinius: Rubinius computes hash values without properly rest...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5372_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5372_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5372_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Rubinius computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5372_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rubinius:rubinius:-"/>
    <sec:identifier>CVE-2012-5372</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5371:ruby: Ruby (aka CRuby) 1.9 before 1.9.3-p327 and 2.0 befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5371_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5371_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5371_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Ruby (aka CRuby) 1.9 before 1.9.3-p327 and 2.0 before r37575 computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against a variant of the MurmurHash2 algorithm, a different vulnerability than CVE-2011-4815.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5371_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ruby-lang:ruby:1.9"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.1"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.2"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3:p0"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3:p125"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3:p194"/>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3:p286 and previous versions"/>
    <category term="cpe:/a:ruby-lang:ruby:2.0"/>
    <sec:identifier>CVE-2012-5371</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5370:jruby: JRuby computes hash values without properly restric...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5370_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5370_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5370_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash2 algorithm, a different vulnerability than CVE-2011-4838.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5370_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jruby:jruby:-"/>
    <sec:identifier>CVE-2012-5370</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2739:jdk, jre, openjdk: Oracle Java SE before 7 Update 6, and OpenJDK 7 bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2739_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2739_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2739_AD_1.html</id>
    <published>2012-11-28T00:00:00+09:00</published>
    <updated>2012-11-28T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Oracle Java SE before 7 Update 6, and OpenJDK 7 before 7u6 build 12 and 8 before build 39, computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2739_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:jdk:1.7.0"/>
    <category term="cpe:/a:oracle:jdk:1.7.0:update1"/>
    <category term="cpe:/a:oracle:jdk:1.7.0:update2"/>
    <category term="cpe:/a:oracle:jdk:1.7.0:update3"/>
    <category term="cpe:/a:oracle:jdk:1.7.0:update4"/>
    <category term="cpe:/a:oracle:jdk:1.7.0:update5 and previous versions"/>
    <category term="cpe:/a:oracle:jre:1.7.0"/>
    <category term="cpe:/a:oracle:jre:1.7.0:update1"/>
    <category term="cpe:/a:oracle:jre:1.7.0:update2"/>
    <category term="cpe:/a:oracle:jre:1.7.0:update3"/>
    <category term="cpe:/a:oracle:jre:1.7.0:update4"/>
    <category term="cpe:/a:oracle:jre:1.7.0:update5 and previous versions"/>
    <category term="cpe:/a:oracle:openjdk:1.6.0"/>
    <category term="cpe:/a:oracle:openjdk:1.7.0 and previous versions"/>
    <category term="cpe:/a:oracle:openjdk:1.8.0"/>
    <sec:identifier>CVE-2012-2739</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005547:JBoss Enterprise Data Services Platform &#12395;&#12362;&#12369;&#12427;&#12525;&#12464;&#12452;&#12531;&#35469;&#35388;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005547_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005547_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005547_AD_1.html</id>
    <published>2012-11-27T20:19:37+09:00</published>
    <updated>2012-11-27T20:19:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Enterprise Data Services Platform で使用される Teiid Java Database Connectivity (JDBC) ソケットは、ドキュメントおよび仕様に反して、デフォルトのログインメッセージの暗号化を行わないため、ログイン認証情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005547_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_data_services_platform"/>
    <sec:identifier>JVNDB-2012-005547</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005546:&#35079;&#25968;&#12398; JBoss Enterprise &#35069;&#21697;&#12398; JGroups &#35386;&#26029;&#12469;&#12540;&#12499;&#12473;&#12395;&#12362;&#12369;&#12427;&#35386;&#26029;&#24773;&#22577;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005546_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005546_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005546_AD_1.html</id>
    <published>2012-11-27T20:16:34+09:00</published>
    <updated>2012-11-27T20:16:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Enterprise Portal Platform、SOA Platform、および BRMS Platform の JGroups 診断サービス (JGroups diagnostics service) は、JGroups チャネルにより開始される際、認証なしで有効化されるため、診断情報を読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005546_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform"/>
    <sec:identifier>JVNDB-2012-005546</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005200:Gajim &#12398; common/logger.py &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005200_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005200_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005200_AD_1.html</id>
    <published>2012-11-27T20:12:24+09:00</published>
    <updated>2012-11-27T20:12:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Gajim の common/logger.py 内の get_last_conversation_lines 関数には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005200_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gajim:gajim"/>
    <sec:identifier>JVNDB-2011-005200</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005545:&#35079;&#25968;&#12398; JBoss Enterprise &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005545_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005545_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005545_AD_1.html</id>
    <published>2012-11-27T20:10:53+09:00</published>
    <updated>2012-11-27T20:10:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の JBoss Enterprise の JBoss Server は、JaccAuthorizationRealm を使用するよう構成され、かつ JBossWebRealm で ignoreBaseDecision プロパティが true に設定されている場合、WebPermissionMapping クラスによって作成されたパーミッションを適切にチェックしないため、任意のアプリケーションにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005545_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform"/>
    <sec:identifier>JVNDB-2012-005545</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005199:RESTEasy &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005199_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005199_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005199_AD_1.html</id>
    <published>2012-11-27T20:09:36+09:00</published>
    <updated>2012-11-27T20:09:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RESTEasy には、任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005199_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:resteasy"/>
    <sec:identifier>JVNDB-2011-005199</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005544:RESTEasy &#12398; providers.jaxb.JAXBXmlTypeProvider &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005544_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005544_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005544_AD_1.html</id>
    <published>2012-11-27T20:08:34+09:00</published>
    <updated>2012-11-27T20:08:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RESTEasy の providers.jaxb.JAXBXmlTypeProvider 内の readFrom 関数には、任意のファイルを読まれる脆弱性が存在します。  本脆弱性は、CVE-2012-0818 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005544_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:resteasy"/>
    <sec:identifier>JVNDB-2012-005544</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005543:&#35079;&#25968;&#12398; JBoss Enterprise &#35069;&#21697;&#12395;&#12362;&#12369;&#12427; JNDI &#12484;&#12522;&#12540;&#12395;&#12450;&#12452;&#12486;&#12512;&#12434;&#36861;&#21152;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005543_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005543_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005543_AD_1.html</id>
    <published>2012-11-27T20:07:30+09:00</published>
    <updated>2012-11-27T20:07:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の JBoss Enterprise 製品の (1) JNDI サービス、(2) HA-JNDI サービス、および (3) HAJNDIFactory の invoker サーブレットは、書き込みアクセスを適切に制限しないため、JNDI ツリーにアイテムを追加される、削除される、またはアイテムを変更される脆弱性が存在します。  本脆弱性は、CVE-2010-0738 のリグレッションに起因する脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005543_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform"/>
    <sec:identifier>JVNDB-2012-005543</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005198:&#35079;&#25968;&#12398; JBoss Enterprise &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005198_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005198_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005198_AD_1.html</id>
    <published>2012-11-27T20:06:31+09:00</published>
    <updated>2012-11-27T20:06:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の JBoss Enterprise 製品の httpha-invoker により呼び出されるサーブレットは、GET および POST メソッドに対してのみアクセス制御を実行するため、認証を回避される脆弱性が存在します。  本脆弱性は、CVE-2010-0738 のリグレッションに起因する脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005198_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform"/>
    <sec:identifier>JVNDB-2011-005198</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005542:&#35079;&#25968;&#12398; JBoss Enterprise &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005542_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005542_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005542_AD_1.html</id>
    <published>2012-11-27T20:05:06+09:00</published>
    <updated>2012-11-27T20:05:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Enterprise Portal Platform、BRMS Platform および SOA Platform の JMX Console (jmx-console) には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005542_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform"/>
    <sec:identifier>JVNDB-2012-005542</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005541:JBoss Enterprise Portal Platform &#12398; JBossWS &#12395;&#12362;&#12369;&#12427;&#24179;&#25991;&#12487;&#12540;&#12479;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005541_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005541_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005541_AD_1.html</id>
    <published>2012-11-27T20:03:48+09:00</published>
    <updated>2012-11-27T20:03:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Enterprise Portal Platform およびその他の製品の JBoss Web Services (JBossWS) で使用される W3C XML 暗号化標準には、暗号ブロック連鎖 (CBC) モードでブロック暗号を使用する場合、平文データを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005541_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform"/>
    <sec:identifier>JVNDB-2012-005541</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005026:JRuby &#12398;&#27491;&#35215;&#34920;&#29694;&#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005026_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005026_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005026_AD_1.html</id>
    <published>2012-11-27T20:02:33+09:00</published>
    <updated>2012-11-27T20:02:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JRuby の正規表現エンジンは、$KCODE が 'u' に設定されている場合、UTF-8 文字の直後の文字を適切に処理しないため、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005026_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jruby:jruby"/>
    <sec:identifier>JVNDB-2010-005026</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005540:Samsung &#35069;&#12503;&#12522;&#12531;&#12479;&#12395; SNMP &#12467;&#12511;&#12517;&#12491;&#12486;&#12451;&#25991;&#23383;&#21015;&#12364;&#12495;&#12540;&#12489;&#12467;&#12540;&#12489;&#12373;&#12428;&#12390;&#12356;&#12427;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005540_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005540_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005540_AD_1.html</id>
    <published>2012-11-27T18:04:10+09:00</published>
    <updated>2012-11-27T18:04:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Samsung が提供する複数のプリンタのファームウェアには、読み書き可能な SNMP コミュニティ文字列がハードコードされています。  Samsung が提供する複数のプリンタのファームウェアには、読み書き可能な SNMP コミュニティ文字列がハードコードされています。 このコミュニティ文字列は、プリンタの管理機能で SNMP を無効に設定しても、実際には有効なままとなっています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005540_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samsung:misc_printers_firmwere"/>
    <sec:identifier>JVNDB-2012-005540</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005539:OpenVAS Manager &#12398; manage_sql.c &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005539_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005539_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005539_AD_1.html</id>
    <published>2012-11-27T16:58:56+09:00</published>
    <updated>2012-11-27T16:58:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenVAS Manager の manage_sql.c 内の send_to_sourcefire 関数には、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005539_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openvas:openvas_manager"/>
    <sec:identifier>JVNDB-2012-005539</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005538:ar web content manager &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12451;&#12473;&#12463;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005538_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005538_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005538_AD_1.html</id>
    <published>2012-11-27T16:58:29+09:00</published>
    <updated>2012-11-27T16:58:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ar web content manager (AWCM) は、HTTP リクエストにより挿入される comment レコードの数を制限しないため、サービス運用妨害 (ディスク消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005538_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:awcm-cms:ar_web_content_manager"/>
    <sec:identifier>JVNDB-2012-005538</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005537:ar web content manager &#12398; cookie_gen.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12463;&#12483;&#12461;&#12540;&#12434;&#29983;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005537_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005537_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005537_AD_1.html</id>
    <published>2012-11-27T16:57:55+09:00</published>
    <updated>2012-11-27T16:57:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ar web content manager (AWCM) の cookie_gen.php は、認証を要求しないため、任意のクッキーを生成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005537_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:awcm-cms:ar_web_content_manager"/>
    <sec:identifier>JVNDB-2012-005537</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005536:TrouSerS &#12398; tcsd &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12540;&#12514;&#12531;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005536_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005536_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005536_AD_1.html</id>
    <published>2012-11-27T16:57:25+09:00</published>
    <updated>2012-11-27T16:57:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TrouSerS の tcsd には、サービス運用妨害 (デーモンクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005536_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trousers:trousers"/>
    <sec:identifier>JVNDB-2012-005536</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005535:lighttpd &#12398; request.c &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005535_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005535_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005535_AD_1.html</id>
    <published>2012-11-27T16:56:54+09:00</published>
    <updated>2012-11-27T16:56:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
lighttpd の request.c 内の http_request_split_value 関数には、サービス運用妨害 (無限ループ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005535_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lighttpd:lighttpd"/>
    <sec:identifier>JVNDB-2012-005535</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005534:Ruby &#12398; file.c &#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005534_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005534_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005534_AD_1.html</id>
    <published>2012-11-27T16:56:13+09:00</published>
    <updated>2012-11-27T16:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ruby の file.c 内の rb_get_path_check 関数には、想定外のロケーション内に、想定外の名称を持つファイルを作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005534_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ruby-lang:ruby"/>
    <sec:identifier>JVNDB-2012-005534</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005533:Mahara &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005533_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005533_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005533_AD_1.html</id>
    <published>2012-11-27T16:55:36+09:00</published>
    <updated>2012-11-27T16:55:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は CVE-2012-2243 から分割された脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005533_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005533</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005532:Mahara &#12398; group/members.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005532_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005532_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005532_AD_1.html</id>
    <published>2012-11-27T16:54:15+09:00</published>
    <updated>2012-11-27T16:54:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara の group/members.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005532_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005532</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005531:Mahara &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005531_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005531_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005531_AD_1.html</id>
    <published>2012-11-27T16:53:47+09:00</published>
    <updated>2012-11-27T16:53:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005531_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005531</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005530:Mahara &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12434;&#21066;&#38500;&#12373;&#12428;&#12427;&#12362;&#12424;&#12403; CSRF &#20445;&#35703;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005530_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005530_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005530_AD_1.html</id>
    <published>2012-11-27T16:53:17+09:00</published>
    <updated>2012-11-27T16:53:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、クリックジャッキング攻撃を実行され、任意のユーザを削除される、および CSRF 保護を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005530_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005530</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005529:Mahara &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12503;&#12525;&#12464;&#12521;&#12512;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005529_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005529_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005529_AD_1.html</id>
    <published>2012-11-27T16:52:50+09:00</published>
    <updated>2012-11-27T16:52:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、任意のプログラムを実行される脆弱性が存在します。  本脆弱性は、認証なしで攻撃を実行するために CVE-2012-2243 と一緒に利用される脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005529_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005529</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005528:Mahara &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005528_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005528_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005528_AD_1.html</id>
    <published>2012-11-27T16:52:22+09:00</published>
    <updated>2012-11-27T16:52:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、認証なしで攻撃を実行するために CVE-2012-2244 と一緒に利用される脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005528_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005528</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005527:Mahara &#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005527_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005527_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005527_AD_1.html</id>
    <published>2012-11-27T16:51:39+09:00</published>
    <updated>2012-11-27T16:51:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mahara には、任意のファイルを読まれる、または TCP 接続を作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005527_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara"/>
    <sec:identifier>JVNDB-2012-005527</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005526:Firefox &#29992; Unity integration &#25313;&#24373;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (Firefox &#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005526_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005526_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005526_AD_1.html</id>
    <published>2012-11-27T16:50:56+09:00</published>
    <updated>2012-11-27T16:50:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Firefox 用 Unity integration 拡張機能 (unity-firefox-extension) は、コールバックを適切に処理しないため、サービス運用妨害 (Firefox クラッシュ) 状態となる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005526_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension"/>
    <sec:identifier>JVNDB-2012-005526</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005525:Remote Login Service &#12395;&#12362;&#12369;&#12427;&#12525;&#12464;&#12452;&#12531;&#35469;&#35388;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005525_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005525_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005525_AD_1.html</id>
    <published>2012-11-27T16:50:20+09:00</published>
    <updated>2012-11-27T16:50:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Remote Login Service (RLS) は、ユーザを変更する際、アカウント情報を適切に削除しないため、ログイン認証を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005525_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:remote_login_service_hackers:remote_login_service"/>
    <sec:identifier>JVNDB-2012-005525</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005524:Xen &#12398; HVMOP_pagetable_dying &#12495;&#12452;&#12497;&#12540;&#12467;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12495;&#12452;&#12497;&#12540;&#12496;&#12452;&#12470;&#12540;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005524_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005524_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005524_AD_1.html</id>
    <published>2012-11-27T16:49:07+09:00</published>
    <updated>2012-11-27T16:49:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の HVMOP_pagetable_dying ハイパーコールは、シャドウページテーブル上で実行されている場合、ページテーブルの状態を適切にチェックしないため、サービス運用妨害 (ハイパーバイザークラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005524_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005524</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005523:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005523_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005523_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005523_AD_1.html</id>
    <published>2012-11-27T16:48:38+09:00</published>
    <updated>2012-11-27T16:48:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen には、サービス運用妨害 (domain 0 VCPU ハングおよびカーネルパニック) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005523_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005523</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005522:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005522_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005522_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005522_AD_1.html</id>
    <published>2012-11-27T16:48:13+09:00</published>
    <updated>2012-11-27T16:48:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の下記の関数は、無効な ID プールを確認しないため、サービス運用妨害 (メモリの破損およびホストクラッシュ) 状態にされる、または任意のコードを実行される脆弱性が存在します。  (1) memc_save_get_next_page (2) tmemc_restore_put_page (3) tmemc_restore_flush_page  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6036 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005522_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005522</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005521:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005521_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005521_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005521_AD_1.html</id>
    <published>2012-11-27T16:44:23+09:00</published>
    <updated>2012-11-27T16:44:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の do_tmem_destroy_pool 関数は、プール ID を適切に検証しないため、サービス運用妨害 (メモリ破損およびホストクラッシュ) 状態にされる、または任意のコードを実行される脆弱性が存在します。  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6035 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005521_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005521</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005520:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005520_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005520_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005520_AD_1.html</id>
    <published>2012-11-27T16:43:39+09:00</published>
    <updated>2012-11-27T16:43:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の下記の関数には、サービス運用妨害 (メモリの破損およびホストクラッシュ) 状態にされる、または任意のコードを実行される脆弱性が存在します。  (1) tmemc_save_get_next_page (2) tmemc_save_get_next_inv functions (3) TMEMC_SAVE_GET_POOL_UUID  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6034 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005520_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005520</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005519:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#21046;&#24481;&#12473;&#12479;&#12483;&#12463;&#12458;&#12506;&#12524;&#12540;&#12471;&#12519;&#12531;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005519_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005519_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005519_AD_1.html</id>
    <published>2012-11-27T16:24:19+09:00</published>
    <updated>2012-11-27T16:24:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の do_tmem_control 関数には、権限を適切に確認しないため、制御スタックオペレーションにアクセスされる脆弱性が存在します。  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6033 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005519_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005519</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005518:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005518_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005518_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005518_AD_1.html</id>
    <published>2012-11-27T16:22:30+09:00</published>
    <updated>2012-11-27T16:22:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の (1) tmh_copy_from_client 関数、または (2) tmh_copy_to_client 関数には、整数オーバーフローの脆弱性が存在します。  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6032 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005518_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005518</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005517:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005517_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005517_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005517_AD_1.html</id>
    <published>2012-11-27T16:21:41+09:00</published>
    <updated>2012-11-27T16:21:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の do_tmem_get 関数には、サービス運用妨害 (CPU ハングおよびホストクラッシュ) 状態となる脆弱性が存在します。  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6031 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005517_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005517</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005516:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005516_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005516_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005516_AD_1.html</id>
    <published>2012-11-27T16:18:06+09:00</published>
    <updated>2012-11-27T16:18:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) 内の do_tmem_op 関数には、サービス運用妨害 (ホストクラッシュ) 状態となるなど、不特定の影響を受ける脆弱性が存在します。  当初 CVE-2012-3497 の一部として発行された本問題は、CVE-2012-6030 を含む複数の CVE 識別番号に分割されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005516_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005516</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005515:Nicola Asuni TCExam &#12398; admin/code/tce_select_users_popup.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005515_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005515_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005515_AD_1.html</id>
    <published>2012-11-27T16:12:52+09:00</published>
    <updated>2012-11-27T16:12:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Nicola Asuni TCExam の admin/code/tce_select_users_popup.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005515_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tecnick:tcexam"/>
    <sec:identifier>JVNDB-2012-005515</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005514:Nicola Asuni TCExam &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005514_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005514_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005514_AD_1.html</id>
    <published>2012-11-27T16:11:57+09:00</published>
    <updated>2012-11-27T16:11:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Nicola Asuni TCExam には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005514_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tecnick:tcexam"/>
    <sec:identifier>JVNDB-2012-005514</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005513:Xen &#12398;&#12464;&#12521;&#12501;&#12451;&#12459;&#12523;&#12467;&#12531;&#12477;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#12507;&#12473;&#12488;&#12522;&#12477;&#12540;&#12473;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005513_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005513_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005513_AD_1.html</id>
    <published>2012-11-27T16:11:22+09:00</published>
    <updated>2012-11-27T16:11:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen のグラフィカルコンソールには、重要なホストリソース情報を取得される脆弱性が存在します。  本脆弱性は、CVE-2007-0998 と重複している可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005513_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005513</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005512:Xen &#12362;&#12424;&#12403; Citrix XenServer &#12398; grant table hypercall &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005512_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005512_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005512_AD_1.html</id>
    <published>2012-11-27T16:09:23+09:00</published>
    <updated>2012-11-27T16:09:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および Citrix XenServer の grant table hypercall 内の GNTTABOP_swap_grant_ref サブオペレーションには、サービス運用妨害 (ホストクラッシュ) 状態となる、および権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005512_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <sec:identifier>JVNDB-2012-005512</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005511:Xen &#12362;&#12424;&#12403; &#20182;&#12398;&#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Qemu &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005511_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005511_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005511_AD_1.html</id>
    <published>2012-11-27T16:03:04+09:00</published>
    <updated>2012-11-27T16:03:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および 他の製品で使用される Qemu には、バーチャルコンソールバックエンドを伴う特定のデバイスをエミュレートする場合、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005511_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <category term="cpe:/a:qemu:qemu"/>
    <sec:identifier>JVNDB-2012-005511</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005510:Xen &#12362;&#12424;&#12403; Citrix XenServer &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005510_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005510_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005510_AD_1.html</id>
    <published>2012-11-27T16:01:10+09:00</published>
    <updated>2012-11-27T16:01:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および Citrix XenServer の PHYSDEVOP_map_pirq には、サービス運用妨害 (ホストクラッシュ) 状態となる、およびハイパーバイザまたはゲストメモリを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005510_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <sec:identifier>JVNDB-2012-005510</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005509:Xen &#12398; Transcendent Memory &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005509_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005509_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005509_AD_1.html</id>
    <published>2012-11-27T15:55:37+09:00</published>
    <updated>2012-11-27T15:55:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の Transcendent Memory (TMEM) の (1) TMEMC_SAVE_GET_CLIENT_WEIGHT、(2) TMEMC_SAVE_GET_CLIENT_CAP、(3) TMEMC_SAVE_GET_CLIENT_FLAGS、および (4) TMEMC_SAVE_END には、サービス運用妨害 (NULL ポインタデリファレンスまたはメモリ破損およびホストクラッシュ) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005509_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005509</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005508:Xen &#12362;&#12424;&#12403; Citrix XenServer &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005508_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005508_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005508_AD_1.html</id>
    <published>2012-11-27T15:54:20+09:00</published>
    <updated>2012-11-27T15:54:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および Citrix XenServer の XENMEM_populate_physmap には、変換ページングモードが利用されていない場合、サービス運用妨害 (BUG の誘発およびホストクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005508_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <sec:identifier>JVNDB-2012-005508</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005507:Xen &#12362;&#12424;&#12403; Citrix XenServer &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005507_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005507_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005507_AD_1.html</id>
    <published>2012-11-27T15:53:28+09:00</published>
    <updated>2012-11-27T15:53:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および Citrix XenServer の arch/x86/physdev.c 内の physdev_get_free_pirq ハイパーコールには、戻り値がエラーを示すか確認せずに、配列インデックスに get_free_pirq 関数の戻り値を使用するため、サービス運用妨害 (不正なメモリ書き込みおよびホストクラッシュ) 状態となる、および権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005507_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <sec:identifier>JVNDB-2012-005507</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005506:Xen &#12362;&#12424;&#12403; Citrix XenServer &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12507;&#12473;&#12488;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005506_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005506_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005506_AD_1.html</id>
    <published>2012-11-27T15:49:46+09:00</published>
    <updated>2012-11-27T15:49:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen および Citrix XenServer の include/asm-x86/debugreg.h 内の set_debugreg ハイパーコールには、x86-64 システム上で稼働する場合、サービス運用妨害 (ホストクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005506_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <category term="cpe:/a:citrix:xenserver"/>
    <sec:identifier>JVNDB-2012-005506</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005505:Perl &#29992; CGI.pm &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#25913;&#34892;&#12434;&#25407;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005505_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005505_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005505_AD_1.html</id>
    <published>2012-11-27T14:11:19+09:00</published>
    <updated>2012-11-27T14:11:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Perl 用 CGI.pm モジュールは、(1) Set-Cookie、または (2) P3P ヘッダに含まれる改行を適切にエスケープしないため、CGI.pm を使用するアプリケーションからのレスポンスの任意のヘッダに改行を挿入される脆弱性が存在します&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005505_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:andy_armstrong:cgi.pm"/>
    <sec:identifier>JVNDB-2012-005505</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005504:Munin &#12398; munin-cgi-graph &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12395;&#12501;&#12449;&#12452;&#12523;&#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005504_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005504_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005504_AD_1.html</id>
    <published>2012-11-27T14:10:01+09:00</published>
    <updated>2012-11-27T14:10:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Munin の munin-cgi-graph は、Apache 上の CGI モジュールとして動作している場合、新しい設定ファイルをロードできるため、任意のディレクトリにファイルを作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005504_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:munin-monitoring:munin"/>
    <sec:identifier>JVNDB-2012-005504</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005503:Munin &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005503_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005503_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005503_AD_1.html</id>
    <published>2012-11-27T14:09:03+09:00</published>
    <updated>2012-11-27T14:09:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Munin は、root として実行しないプラグインと、root として実行するプラグイン状態ファイル (plugin state file) を、グループ書き込み可能 (group-writable) である同じディレクトリ内に格納するため、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005503_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:munin-monitoring:munin"/>
    <sec:identifier>JVNDB-2012-005503</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6050:routeros: The winbox service in MikroTik RouterOS 5.15 and ea...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6050_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6050_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6050_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), read the router version, and possibly have other impacts via a request to download the router's DLLs or plugins, as demonstrated by roteros.dll.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6050_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:mikrotik:routeros:5.15"/>
    <sec:identifier>CVE-2012-6050</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6049:quick.cart: Open Solution Quick.Cart 5.0 allows remote attacker...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6049_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6049_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6049_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Open Solution Quick.Cart 5.0 allows remote attackers to obtain sensitive information via (1) a long string or (2) invalid characters in a cookie, which reveals the installation path in an error message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6049_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opensolution:quick.cart:5.0"/>
    <sec:identifier>CVE-2012-6049</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6048:guitar_pro: Guitar Pro 6.1.1 r10791 allows remote attackers to ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6048_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6048_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6048_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Guitar Pro 6.1.1 r10791 allows remote attackers to cause a denial of service (crash) via a long string in a gpx file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6048_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:guitar-pro:guitar_pro:6.1.1"/>
    <sec:identifier>CVE-2012-6048</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6047:x7_chat: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6047_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6047_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6047_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in X7 Chat 2.0.5.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that add a user to an arbitrary group via the users page in an adminpanel action to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6047_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:x7_group:x7_chat:1.0.0b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.1.1b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.1.2b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.2.0b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.0b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.1b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.2b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.3b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.4b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.5b"/>
    <category term="cpe:/a:x7_group:x7_chat:1.3.6"/>
    <category term="cpe:/a:x7_group:x7_chat:2.0.0"/>
    <category term="cpe:/a:x7_group:x7_chat:2.0.2"/>
    <category term="cpe:/a:x7_group:x7_chat:2.0.3"/>
    <category term="cpe:/a:x7_group:x7_chat:2.0.4.4"/>
    <category term="cpe:/a:x7_group:x7_chat:2.0.5.1 and previous versions"/>
    <sec:identifier>CVE-2012-6047</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6046:php_enter: Static code injection vulnerability in admin/banner...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6046_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6046_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6046_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Static code injection vulnerability in admin/banners.php in PHP Enter allows remote attackers to inject arbitrary PHP code into horad.php via the code parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6046_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpenter:php_enter:-"/>
    <sec:identifier>CVE-2012-6046</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6045:ramui_forum: Cross-site scripting (XSS) vulnerability in gb/user...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6045_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6045_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6045_AD_1.html</id>
    <published>2012-11-27T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in gb/user/index.php in Ramui Forum, possibly 1.0 Beta, allows remote attackers to inject arbitrary web script or HTML via the query parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6045_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ramui:ramui_forum:1.0:beta"/>
    <sec:identifier>CVE-2012-6045</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5286:com_jstore: Directory traversal vulnerability in Jstore (com_js...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5286_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5286_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5286_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5286_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joobi:com_jstore:-"/>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>CVE-2010-5286</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5285:collabtive: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in admin.php in Collabtive 0.65 allows remote attackers to hijack the authentication of administrators for requests that add administrative users via the edituser action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5285_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive:0.6.5"/>
    <sec:identifier>CVE-2010-5285</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5284:collabtive: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.65 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5284_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:o-dyn:collabtive:0.6.5"/>
    <sec:identifier>CVE-2010-5284</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5283:livelink_ecm: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5283_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5283_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5283_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in OpenText ECM (formerly Livelink ECM) 9.7.1 allows remote attackers to hijack the authentication of administrators for requests that change folder and resource permissions.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5283_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opentext:livelink_ecm:9.7.1"/>
    <sec:identifier>CVE-2010-5283</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5282:livelink_ecm: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5282_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5282_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5282_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in OpenText ECM (formerly Livelink ECM) 9.7.1 allow remote attackers to inject arbitrary web script or HTML via the (1) viewType and (2) sort parameters in a browse action to livelink/livelink; and the (3) nodeid, (4) setctx, and (5) support parameters to livelinkdav/nodes/OOB_DAVWindow.html.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5282_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opentext:livelink_ecm:9.7.1"/>
    <sec:identifier>CVE-2010-5282</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5281:ibrowser: Directory traversal vulnerability in ibrowser.php i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5281_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5281_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5281_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in ibrowser.php in the CMScout 2.09 IBrowser TinyMCE Plugin 1.4.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter.  NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5281_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:net4visions:ibrowser:1.4.1"/>
    <sec:identifier>CVE-2010-5281</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-5280:com_cbe: Directory traversal vulnerability in the Community ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5280_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5280_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5280_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tabname parameter in a userProfile action to index.php.  NOTE: this can be leveraged to execute arbitrary code by using the file upload feature.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-5280_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla-cbe:com_cbe:1.4.10"/>
    <category term="cpe:/a:joomla-cbe:com_cbe:1.4.8"/>
    <category term="cpe:/a:joomla-cbe:com_cbe:1.4.9"/>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>CVE-2010-5280</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6044:m-player: M-Player 0.4 allows remote attackers to cause a den...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6044_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6044_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6044_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
M-Player 0.4 allows remote attackers to cause a denial of service (crash) via a crafted MP3 file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6044_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mjsware:m-player:4.3"/>
    <sec:identifier>CVE-2012-6044</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6043:php-fusion: Cross-site scripting (XSS) vulnerability in downloa...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6043_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6043_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6043_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in downloads.php in PHP-Fusion 7.02.04 allows remote attackers to inject arbitrary web script or HTML via the cat_id parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6043_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:php-fusion:php-fusion:7.02.04"/>
    <sec:identifier>CVE-2012-6043</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6042:gpsmapedit: GPSMapEdit 1.1.73.2 allows user-assisted remote att...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
GPSMapEdit 1.1.73.2 allows user-assisted remote attackers to cause a denial of service (crash) via a long string in a lst file, likely a buffer overflow.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6042_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:geopainting:gpsmapedit:1.1.73.2"/>
    <sec:identifier>CVE-2012-6042</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6041:greenbrowser: Double free vulnerability in GreenBrowser before 6....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6041_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6041_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6041_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in GreenBrowser before 6.0.1002, when the keyword search bar (F6) is activated, allows remote attackers to execute arbitrary code via a crafted iframe.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6041_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:morequick:greenbrowser:6.0.1001 and previous versions"/>
    <sec:identifier>CVE-2012-6041</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6040:file_king_advanced_file_management: Cross-site scripting (XSS) vulnerability in users.p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6040_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6040_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6040_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in users.php in File King Advanced File Management 1.4 allows remote attackers to inject arbitrary web script or HTML via the page parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6040_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:convergine:file_king_advanced_file_management:1.4"/>
    <sec:identifier>CVE-2012-6040</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6039:advanced_image_hosting_script: SQL injection vulnerability in view_comments.php in...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6039_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6039_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6039_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in view_comments.php in YABSoft Advanced Image Hosting (AIH) Script, possibly 2.3, allows remote attackers to execute arbitrary SQL commands via the gal parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6039_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yabsoft:advanced_image_hosting_script:-"/>
    <category term="cpe:/a:yabsoft:advanced_image_hosting_script:2.3"/>
    <sec:identifier>CVE-2012-6039</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6038:razorcms: admin/core/admin_func.php in razorCMS before 1.2.1 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6038_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6038_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6038_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-27T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
admin/core/admin_func.php in razorCMS before 1.2.1 does not properly restrict access to certain administrator directories and files, which allows remote authenticated users to read, edit, rename, move, copy and delete files via the (1) dir parameter in a fileman or (2) filemanview action.  NOTE: this issue has been referred to as a &quot;path traversal.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6038_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms:0.2"/>
    <category term="cpe:/a:razorcms:razorcms:0.2:rc"/>
    <category term="cpe:/a:razorcms:razorcms:0.2:rc2"/>
    <category term="cpe:/a:razorcms:razorcms:0.3"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta1"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta2"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:rc"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:rc2"/>
    <category term="cpe:/a:razorcms:razorcms:0.4"/>
    <category term="cpe:/a:razorcms:razorcms:1.0"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:beta"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:beta2"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:rc"/>
    <category term="cpe:/a:razorcms:razorcms:1.1"/>
    <category term="cpe:/a:razorcms:razorcms:1.2 and previous versions"/>
    <sec:identifier>CVE-2012-6038</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005502:&#35079;&#25968;&#12398; Sinapsi &#35069;&#21697;&#12398;&#31649;&#29702; Web &#12506;&#12540;&#12472;&#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#32773;&#12398;&#12450;&#12463;&#12475;&#12473;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005502_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005502_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005502_AD_1.html</id>
    <published>2012-11-26T15:47:37+09:00</published>
    <updated>2012-11-26T15:47:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Sinapsi 製品の管理 Web ページは、認証を要求しないため、管理者のアクセス権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005502_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware"/>
    <sec:identifier>JVNDB-2012-005502</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005501:&#35079;&#25968;&#12398; Sinapsi &#35069;&#21697;&#12398; ping.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005501_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005501_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005501_AD_1.html</id>
    <published>2012-11-26T15:46:03+09:00</published>
    <updated>2012-11-26T15:46:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Sinapsi 製品の ping.php には、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005501_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware"/>
    <sec:identifier>JVNDB-2012-005501</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005500:&#35079;&#25968;&#12398; Sinapsi &#35069;&#21697;&#12398; login.php &#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#32773;&#12398;&#12450;&#12463;&#12475;&#12473;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005500_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005500_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005500_AD_1.html</id>
    <published>2012-11-26T15:45:07+09:00</published>
    <updated>2012-11-26T15:45:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Sinapsi 製品の login.php には、ハードコーディングされた複数のアカウント情報が保存されるため、管理者のアクセス権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005500_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware"/>
    <sec:identifier>JVNDB-2012-005500</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005499:&#35079;&#25968;&#12398; Sinapsi &#35069;&#21697;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005499_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005499_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005499_AD_1.html</id>
    <published>2012-11-26T15:42:47+09:00</published>
    <updated>2012-11-26T15:42:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Sinapsi 製品には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005499_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware"/>
    <sec:identifier>JVNDB-2012-005499</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005498:IBM WebSphere DataPower XC10 &#12450;&#12503;&#12521;&#12452;&#12450;&#12531;&#12473;&#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#12525;&#12540;&#12523;&#12398;&#35201;&#20214;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005498_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005498_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005498_AD_1.html</id>
    <published>2012-11-26T15:42:05+09:00</published>
    <updated>2012-11-26T15:42:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere DataPower XC10 アプライアンスには、管理ロール (administrative-role) の要件を回避され、任意の JMX の操作を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005498_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance"/>
    <sec:identifier>JVNDB-2012-005498</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005497:IBM WebSphere DataPower XC10 &#12450;&#12503;&#12521;&#12452;&#12450;&#12531;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12503;&#12525;&#12475;&#12473;&#32066;&#20102;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005497_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005497_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005497_AD_1.html</id>
    <published>2012-11-26T15:41:17+09:00</published>
    <updated>2012-11-26T15:41:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere DataPower XC10 アプライアンスは、不特定のインターフェイスへのアクセスに認証を要求しないため、サービス運用妨害 (プロセス終了) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005497_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance"/>
    <sec:identifier>JVNDB-2012-005497</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005496:IBM WebSphere DataPower XC10 &#12450;&#12503;&#12521;&#12452;&#12450;&#12531;&#12473;&#12395;&#12362;&#12369;&#12427;&#12467;&#12531;&#12486;&#12490;&#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005496_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005496_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005496_AD_1.html</id>
    <published>2012-11-26T15:40:21+09:00</published>
    <updated>2012-11-26T15:40:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere DataPower XC10 アプライアンスは、collective 設定が有効になっている場合、異なる利用者のインストールにおいて共有される単一の秘密鍵を使用するため、コンテナサーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005496_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance"/>
    <sec:identifier>JVNDB-2012-005496</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005495:eGroupware &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005495_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005495_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005495_AD_1.html</id>
    <published>2012-11-26T15:35:51+09:00</published>
    <updated>2012-11-26T15:35:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
eGroupware の phpgwapi/inc/common_functions_inc.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005495_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:egroupware:egroupware"/>
    <sec:identifier>JVNDB-2012-005495</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005494:Drupal &#29992; Printer, email and PDF versions &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005494_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005494_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005494_AD_1.html</id>
    <published>2012-11-26T15:35:00+09:00</published>
    <updated>2012-11-26T15:35:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Printer, email and PDF versions モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005494_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joao_ventura:print"/>
    <sec:identifier>JVNDB-2012-005494</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005493:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#28961;&#38480;&#12523;&#12540;&#12503; &#12362;&#12424;&#12403; &#12495;&#12531;&#12464;&#12450;&#12483;&#12503;&#12414;&#12383;&#12399;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005493_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005493_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005493_AD_1.html</id>
    <published>2012-11-26T15:33:47+09:00</published>
    <updated>2012-11-26T15:33:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen には、64 ビットハイパーバイザ上で 32 ビットの x86 PV ゲストが稼働している際、 サービス運用妨害 (無限ループ および ハングアップまたはクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005493_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005493</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005492:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12513;&#12514;&#12522;&#28040;&#36027;&#12362;&#12424;&#12403;&#34920;&#26126;&#36949;&#21453;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005492_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005492_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005492_AD_1.html</id>
    <published>2012-11-26T15:33:18+09:00</published>
    <updated>2012-11-26T15:33:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen には、set_p2m_entry 関数が失敗した際、p2m と m2p テーブルの同期を適切に行わないため、サービス運用妨害 (メモリ消費および表明違反) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005492_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005492</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005491:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (Xen &#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005491_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005491_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005491_AD_1.html</id>
    <published>2012-11-26T15:32:55+09:00</published>
    <updated>2012-11-26T15:32:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の (1) domain_pirq_to_emuirq 関数、および (2) physdev_unmap_pirq 関数には、サービス運用妨害 (Xen クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005491_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005491</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005490:Xen &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (Xen &#12398;&#28961;&#38480;&#12523;&#12540;&#12503;&#12362;&#12424;&#12403;&#29289;&#29702; CPU &#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005490_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005490_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005490_AD_1.html</id>
    <published>2012-11-26T15:32:12+09:00</published>
    <updated>2012-11-26T15:32:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen には、サービス運用妨害 (Xen の無限ループおよび物理 CPU の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005490_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005490</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005489:mcrypt &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005489_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005489_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005489_AD_1.html</id>
    <published>2012-11-26T15:31:47+09:00</published>
    <updated>2012-11-26T15:31:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
mcrypt には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005489_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt"/>
    <sec:identifier>JVNDB-2012-005489</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005488:mcrypt &#12395;&#12362;&#12369;&#12427;&#12501;&#12457;&#12540;&#12510;&#12483;&#12488;&#12473;&#12488;&#12522;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005488_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005488_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005488_AD_1.html</id>
    <published>2012-11-26T15:30:35+09:00</published>
    <updated>2012-11-26T15:30:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
mcrypt には、フォーマットストリングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005488_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt"/>
    <sec:identifier>JVNDB-2012-005488</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005487:mcrypt &#12398; extra.c &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005487_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005487_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005487_AD_1.html</id>
    <published>2012-11-26T15:30:11+09:00</published>
    <updated>2012-11-26T15:30:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
mcrypt の extra.c 内の check_file_head 関数には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005487_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt"/>
    <sec:identifier>JVNDB-2012-005487</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5520:openvas_manager: The send_to_sourcefire function in manage_sql.c in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5520_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5520_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5520_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands via the (1) IP address or (2) port number field in an OMP request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5520_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openvas:openvas_manager:3.0.0"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0.1"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0.2"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0.3"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta1"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta2"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta3"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta4"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta5"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta6"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta7"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:beta8"/>
    <category term="cpe:/a:openvas:openvas_manager:3.0:rc1"/>
    <sec:identifier>CVE-2012-5520</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2438:ar_web_content_manager: ar web content manager (AWCM) 2.2 does not restrict...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2438_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2438_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2438_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ar web content manager (AWCM) 2.2 does not restrict the number of comment records that can be submitted through HTTP requests, which allows remote attackers to cause a denial of service (disk consumption) via the coment parameter to (1) show_video.php or (2) topic.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2438_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:awcm-cms:ar_web_content_manager:2.2"/>
    <sec:identifier>CVE-2012-2438</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2437:ar_web_content_manager: cookie_gen.php in ar web content manager (AWCM) 2.2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2437_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2437_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2437_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
cookie_gen.php in ar web content manager (AWCM) 2.2 does not require authentication, which allows remote attackers to generate arbitrary cookies via the name parameter in conjunction with the content parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2437_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:awcm-cms:ar_web_content_manager:2.2"/>
    <sec:identifier>CVE-2012-2437</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0698:trousers: tcsd in TrouSerS before 0.3.10 allows remote attack...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0698_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0698_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0698_AD_1.html</id>
    <published>2012-11-26T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
tcsd in TrouSerS before 0.3.10 allows remote attackers to cause a denial of service (daemon crash) via a crafted type_offset value in a TCP packet to port 30003.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0698_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:debian:trousers:0.2.8"/>
    <category term="cpe:/a:debian:trousers:0.2.9"/>
    <category term="cpe:/a:debian:trousers:0.2.9.1"/>
    <category term="cpe:/a:debian:trousers:0.2.9.2"/>
    <category term="cpe:/a:debian:trousers:0.3.0"/>
    <category term="cpe:/a:debian:trousers:0.3.1"/>
    <category term="cpe:/a:debian:trousers:0.3.2"/>
    <category term="cpe:/a:debian:trousers:0.3.3"/>
    <category term="cpe:/a:debian:trousers:0.3.4"/>
    <category term="cpe:/a:debian:trousers:0.3.5"/>
    <category term="cpe:/a:debian:trousers:0.3.6"/>
    <category term="cpe:/a:debian:trousers:0.3.7"/>
    <category term="cpe:/a:debian:trousers:0.3.8"/>
    <category term="cpe:/a:debian:trousers:0.3.9 and previous versions"/>
    <sec:identifier>CVE-2012-0698</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6037:mahara: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6037_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6037_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6037_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4, and other versions including 1.2, allow remote attackers to inject arbitrary web script or HTML via a CSV header with &quot;unknown fields,&quot; which are not properly handled in error messages in the (1) bulk user, (2) group, and (3) group member upload capabilities.  NOTE: this issue was originally part of CVE-2012-2243, but that ID was SPLIT due to different issues by different researchers.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6037_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4.4"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-6037</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5533:lighttpd: The http_request_split_value function in request.c ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5533_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5533_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5533_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The http_request_split_value function in request.c in lighttpd 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the &quot;Connection: TE,,Keep-Alive&quot; header.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5533_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lighttpd:lighttpd:1.4.31"/>
    <category term="cpe:/a:lighttpd:lighttpd:1.4.32"/>
    <sec:identifier>CVE-2012-5533</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4538:xen: The HVMOP_pagetable_dying hypercall in Xen 4.0, 4.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4538_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4538_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4538_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The HVMOP_pagetable_dying hypercall in Xen 4.0, 4.1, and 4.2 does not properly check the pagetable state when running on shadow pagetables, which allows a local HVM guest OS to cause a denial of service (hypervisor crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4538_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-4538</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4522:ruby: The rb_get_path_check function in file.c in Ruby 1....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4522_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4522_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4522_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected names via a NUL byte in a file path.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4522_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ruby-lang:ruby:1.9.3"/>
    <category term="cpe:/a:ruby-lang:ruby:2.0.0"/>
    <sec:identifier>CVE-2012-4522</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3433:xen: Xen 4.0 and 4.1 allows local HVM guest OS kernels t...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3433_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3433_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3433_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 4.0 and 4.1 allows local HVM guest OS kernels to cause a denial of service (domain 0 VCPU hang and kernel panic) by modifying the physical address space in a way that triggers excessive shared page search time during the p2m teardown.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3433_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <sec:identifier>CVE-2012-3433</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2253:mahara: Cross-site scripting (XSS) vulnerability in group/m...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2253_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2253_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2253_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in group/members.php in Mahara 1.5.x before 1.5.7 and 1.6.x before 1.6.2 allows remote attackers to inject arbitrary web script or HTML via the query parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2253_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5.4"/>
    <category term="cpe:/a:mahara:mahara:1.5.6"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.6.0"/>
    <category term="cpe:/a:mahara:mahara:1.6.1"/>
    <sec:identifier>CVE-2012-2253</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2247:mahara: Cross-site scripting (XSS) vulnerability in Mahara ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2247_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2247_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2247_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML via vectors related to artefact/file/ and a crafted SVG file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2247_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4.4"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-2247</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2246:mahara: Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2246_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2246_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2246_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to conduct clickjacking attacks to delete arbitrary users and bypass CSRF protection via account/delete.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2246_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4.4"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-2246</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2244:mahara: Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2244_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2244_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2244_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary programs by modifying the path to clamav.  NOTE: this can be exploited without authentication by leveraging CVE-2012-2243.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2244_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-2244</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2243:mahara: Cross-site scripting (XSS) vulnerability in Mahara ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2243_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2243_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2243_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML by uploading an XML file with the xhtml extension, which is rendered inline as script.  NOTE: this can be leveraged with CVE-2012-2244 to execute arbitrary code without authentication, as demonstrated by modifying the clamav path.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2243_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4.4"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5.3"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-2243</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2239:mahara: Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2239_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2239_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2239_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2239_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mahara:mahara:1.1.4"/>
    <category term="cpe:/a:mahara:mahara:1.1.5"/>
    <category term="cpe:/a:mahara:mahara:1.4.0"/>
    <category term="cpe:/a:mahara:mahara:1.4.1"/>
    <category term="cpe:/a:mahara:mahara:1.4.2"/>
    <category term="cpe:/a:mahara:mahara:1.4.3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc2"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc3"/>
    <category term="cpe:/a:mahara:mahara:1.4:rc4"/>
    <category term="cpe:/a:mahara:mahara:1.5.0"/>
    <category term="cpe:/a:mahara:mahara:1.5.1"/>
    <category term="cpe:/a:mahara:mahara:1.5.2"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc1"/>
    <category term="cpe:/a:mahara:mahara:1.5:rc2"/>
    <sec:identifier>CVE-2012-2239</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0960:unity-firefox-extension: Unity integration extension (unity-firefox-extensio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0960_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0960_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0960_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unity integration extension (unity-firefox-extension) before 2.4.1 for Firefox does not properly handle callbacks, which allows remote attackers to cause a denial of service (Firefox crash) and possibly execute arbitrary code via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0960_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:0.02:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:0.2.1:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:0.3.1:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:0.3:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.1:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.2:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3.1:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3.2:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3.3:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3.4:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3.5:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.3:-:%7E%7E%7Efirefox%7E%7E"/>
    <category term="cpe:/a:ps_project_management_team:unity-firefox-extension:2.4.0:-:%7E%7E%7Efirefox%7E%7E and previous versions"/>
    <sec:identifier>CVE-2012-0960</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0959:remote_login_service: Remote Login Service (RLS) 1.0.0 does not properly ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0959_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0959_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0959_AD_1.html</id>
    <published>2012-11-24T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Remote Login Service (RLS) 1.0.0 does not properly clear account information when switching users, which might allow physically proximate users to obtain login credentials.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0959_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:remote_login_service_hackers:remote_login_service:1.0.0"/>
    <sec:identifier>CVE-2012-0959</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6036:xen: The (1) memc_save_get_next_page, (2) tmemc_restore_...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6036_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6036_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6036_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) memc_save_get_next_page, (2) tmemc_restore_put_page and (3) tmemc_restore_flush_page functions in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 do not check for negative id pools, which allows local guest OS users to cause a denial of service (memory corruption and host crash) or possibly execute arbitrary code via unspecified vectors.  NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and oth...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6036_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6036</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6035:xen: The do_tmem_destroy_pool function in the Transcende...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6035_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6035_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6035_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The do_tmem_destroy_pool function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly validate pool ids, which allows local guest OS users to cause a denial of service (memory corruption and host crash) or execute arbitrary code via unspecified vectors.  NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6035_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6035</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6034:xen: The (1) tmemc_save_get_next_page and (2) tmemc_save...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6034_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6034_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6034_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) tmemc_save_get_next_page and (2) tmemc_save_get_next_inv functions and the (3) TMEMC_SAVE_GET_POOL_UUID sub-operation in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 &quot;do not check incoming guest output buffer pointers,&quot; which allows local guest OS users to cause a denial of service (memory corruption and host crash) or execute arbitrary code via unspecified vectors.  NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6034_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6034</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6033:xen: The do_tmem_control function in the Transcendent Me...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6033_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6033_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6033_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The do_tmem_control function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly check privileges, which allows local guest OS users to access control stack operations via unspecified vectors.  NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6033_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6033</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6032:xen: Multiple integer overflows in the (1) tmh_copy_from...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6032_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6032_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6032_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple integer overflows in the (1) tmh_copy_from_client and (2) tmh_copy_to_client functions in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (memory corruption and host crash) via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6032_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6032</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6031:xen: The do_tmem_get function in the Transcendent Memory...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6031_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6031_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6031_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The do_tmem_get function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (CPU hang and host crash) via unspecified vectors related to a spinlock being held in the &quot;bad_copy error path.&quot; NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6031_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6031</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-6030:xen: The do_tmem_op function in the Transcendent Memory ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6030_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6030_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6030_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The do_tmem_op function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (host crash) and possibly have other unspecified impacts via unspecified vectors related to &quot;broken locking checks&quot; in an &quot;error path.&quot; NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-6030_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-6030</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4602:tcexam: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4602_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4602_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4602_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in admin/code/tce_select_users_popup.php in Nicola Asuni TCExam before 11.3.009 allow remote attackers to inject arbitrary web script or HTML via the (1) cid or (2) uids parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4602_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tecnick:tcexam:10.1.000"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.001"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.002"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.003"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.004"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.005"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.006"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.007"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.008"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.009"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.010"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.011"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.012"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.009"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.009"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.017"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.018"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.019"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.020"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.021"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.022"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.023"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.024"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.025"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.026"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.027"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.028"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.029"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.030"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.031"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.017"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.018"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.020"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.021"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.022"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.023"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.025"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.026"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.027"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.028"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.029"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.030"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.031"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.032"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.008 and previous versions"/>
    <sec:identifier>CVE-2012-4602</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4601:tcexam: Multiple SQL injection vulnerabilities in Nicola As...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4601_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4601_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4601_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_groups[] parameter to admin/code/tce_edit_test.php or (2) subject_id parameter to admin/code/tce_show_all_questions.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4601_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tecnick:tcexam:10.1.000"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.001"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.002"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.003"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.004"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.005"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.006"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.007"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.008"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.009"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.010"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.011"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.012"/>
    <category term="cpe:/a:tecnick:tcexam:10.1.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.009"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.0.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.009"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.017"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.018"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.019"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.020"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.021"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.022"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.023"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.024"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.025"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.026"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.027"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.028"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.029"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.030"/>
    <category term="cpe:/a:tecnick:tcexam:11.1.031"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.008"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.010"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.011"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.012"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.013"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.014"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.015"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.016"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.017"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.018"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.020"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.021"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.022"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.023"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.025"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.026"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.027"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.028"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.029"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.030"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.031"/>
    <category term="cpe:/a:tecnick:tcexam:11.2.032"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.000"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.001"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.002"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.003"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.004"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.005"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.006"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.007"/>
    <category term="cpe:/a:tecnick:tcexam:11.3.008 and previous versions"/>
    <sec:identifier>CVE-2012-4601</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4411:xen: The graphical console in Xen 4.0, 4.1 and 4.2 allow...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4411_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4411_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4411_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource information via the qemu monitor.  NOTE: this might be a duplicate of CVE-2007-0998.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4411_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-4411</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3516:xen, xenserver: The GNTTABOP_swap_grant_ref sub-operation in the gr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3516_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3516_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3516_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and possibly gain privileges via a crafted grant reference that triggers a write to an arbitrary hypervisor memory location.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3516_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:6.0.2 and previous versions"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-3516</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3515:qemu, xen: Qemu, as used in Xen 4.0, 4.1 and possibly other pr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3515_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3515_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3515_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Qemu, as used in Xen 4.0, 4.1 and possibly other products, when emulating certain devices with a virtual console backend, allows local OS guest users to gain privileges via a crafted escape VT100 sequence that triggers the overwrite of a &quot;device model's address space.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3515_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:qemu:qemu:-"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <sec:identifier>CVE-2012-3515</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3498:xen, xenserver: PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix Xe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3498_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3498_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3498_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix XenServer 6.0.2 and earlier allows local HVM guest OS kernels to cause a denial of service (host crash) and possibly read hypervisor or guest memory via vectors related to a missing range check of map-&gt;index.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3498_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:6.0.2 and previous versions"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-3498</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3497:xen: (1) TMEMC_SAVE_GET_CLIENT_WEIGHT, (2) TMEMC_SAVE_GE...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3497_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3497_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3497_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
(1) TMEMC_SAVE_GET_CLIENT_WEIGHT, (2) TMEMC_SAVE_GET_CLIENT_CAP, (3) TMEMC_SAVE_GET_CLIENT_FLAGS and (4) TMEMC_SAVE_END in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (NULL pointer dereference or memory corruption and host crash) or possibly have other unspecified impacts via a NULL client id.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3497_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-3497</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3496:xen, xenserver: XENMEM_populate_physmap in Xen 4.0, 4.1, and 4.2, a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3496_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3496_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3496_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
XENMEM_populate_physmap in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when translating paging mode is not used, allows local PV OS guest kernels to cause a denial of service (BUG triggered and host crash) via invalid flags such as MEMF_populate_on_demand.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3496_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:6.0.2 and previous versions"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-3496</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3495:xen, xenserver: The physdev_get_free_pirq hypercall in arch/x86/phy...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3495_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3495_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3495_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the return value of the get_free_pirq function as an array index without checking that the return value indicates an error, which allows guest OS users to cause a denial of service (invalid memory write and host crash) and possibly gain privileges via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3495_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:5.0"/>
    <category term="cpe:/a:citrix:xenserver:5.5"/>
    <category term="cpe:/a:citrix:xenserver:5.6"/>
    <category term="cpe:/a:citrix:xenserver:5.6:fp1"/>
    <category term="cpe:/a:citrix:xenserver:5.6:sp2"/>
    <category term="cpe:/a:citrix:xenserver:6.0"/>
    <category term="cpe:/a:citrix:xenserver:6.0.2 and previous versions"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <sec:identifier>CVE-2012-3495</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3494:xen, xenserver: The set_debugreg hypercall in include/asm-x86/debug...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3494_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3494_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3494_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The set_debugreg hypercall in include/asm-x86/debugreg.h in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when running on x86-64 systems, allows local OS guest users to cause a denial of service (host crash) by writing to the reserved bits of the DR7 debug control register.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3494_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xenserver:6.0.2:-:%7E%7E%7E%7Ex64%7E and previous versions"/>
    <category term="cpe:/a:citrix:xenserver:6.0.2:-:%7E%7E%7E%7Ex86%7E and previous versions"/>
    <category term="cpe:/o:xen:xen:4.0.0:-:%7E%7E%7E%7Ex64%7E"/>
    <category term="cpe:/o:xen:xen:4.0.0:-:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:xen:xen:4.1.0:-:%7E%7E%7E%7Ex64%7E"/>
    <category term="cpe:/o:xen:xen:4.1.0:-:%7E%7E%7E%7Ex86%7E"/>
    <category term="cpe:/o:xen:xen:4.2.0:-:%7E%7E%7E%7Ex64%7E"/>
    <category term="cpe:/o:xen:xen:4.2.0:-:%7E%7E%7E%7Ex86%7E"/>
    <sec:identifier>CVE-2012-3494</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3431:jboss_enterprise_data_services_platform: The Teiid Java Database Connectivity (JDBC) socket,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3431_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3431_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3431_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Teiid Java Database Connectivity (JDBC) socket, as used in JBoss Enterprise Data Services Platform before 5.3.0, does not encrypt login messages by default contrary to documentation and specification, which allows remote attackers to obtain login credentials via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3431_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_data_services_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_data_services_platform:5.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-3431</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2377:jboss_enterprise_portal_platform, jboss_enterprise_soa_platform, jboss_enterprise...: JGroups diagnostics service in JBoss Enterprise Por...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2377_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2377_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2377_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
JGroups diagnostics service in JBoss Enterprise Portal Platform before 5.2.2, SOA Platform before 5.3.0, and BRMS Platform before 5.3.0, is enabled without authentication when started by the JGroups channel, which allows remote attackers in adjacent networks to read diagnostics information via a crafted IP multicast.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2377_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform:5.2.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:4.3.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:4.3.0:cp07"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.1 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp01"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp03"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp04"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:tp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp01"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp03"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp04"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.2"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-2377</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2086:gajim: SQL injection vulnerability in the get_last_convers...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2086_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2086_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2086_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows remote attackers to execute arbitrary SQL commands via the jig parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2086_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gajim:gajim:0.1"/>
    <category term="cpe:/a:gajim:gajim:0.10"/>
    <category term="cpe:/a:gajim:gajim:0.10.1"/>
    <category term="cpe:/a:gajim:gajim:0.11"/>
    <category term="cpe:/a:gajim:gajim:0.11.1"/>
    <category term="cpe:/a:gajim:gajim:0.11.2"/>
    <category term="cpe:/a:gajim:gajim:0.11.3"/>
    <category term="cpe:/a:gajim:gajim:0.11.4"/>
    <category term="cpe:/a:gajim:gajim:0.12"/>
    <category term="cpe:/a:gajim:gajim:0.12.1"/>
    <category term="cpe:/a:gajim:gajim:0.12.2"/>
    <category term="cpe:/a:gajim:gajim:0.12.3"/>
    <category term="cpe:/a:gajim:gajim:0.12.4"/>
    <category term="cpe:/a:gajim:gajim:0.12.5"/>
    <category term="cpe:/a:gajim:gajim:0.12.5:alpha1"/>
    <category term="cpe:/a:gajim:gajim:0.12.5:beta1"/>
    <category term="cpe:/a:gajim:gajim:0.13"/>
    <category term="cpe:/a:gajim:gajim:0.13.1"/>
    <category term="cpe:/a:gajim:gajim:0.13.2"/>
    <category term="cpe:/a:gajim:gajim:0.13.3"/>
    <category term="cpe:/a:gajim:gajim:0.13.4"/>
    <category term="cpe:/a:gajim:gajim:0.14"/>
    <category term="cpe:/a:gajim:gajim:0.14.1"/>
    <category term="cpe:/a:gajim:gajim:0.14.2"/>
    <category term="cpe:/a:gajim:gajim:0.14.3"/>
    <category term="cpe:/a:gajim:gajim:0.14.4 and previous versions"/>
    <category term="cpe:/a:gajim:gajim:0.2"/>
    <category term="cpe:/a:gajim:gajim:0.2.1"/>
    <category term="cpe:/a:gajim:gajim:0.3"/>
    <category term="cpe:/a:gajim:gajim:0.4"/>
    <category term="cpe:/a:gajim:gajim:0.4.1"/>
    <category term="cpe:/a:gajim:gajim:0.5"/>
    <category term="cpe:/a:gajim:gajim:0.5.1"/>
    <category term="cpe:/a:gajim:gajim:0.6"/>
    <category term="cpe:/a:gajim:gajim:0.6.1"/>
    <category term="cpe:/a:gajim:gajim:0.7"/>
    <category term="cpe:/a:gajim:gajim:0.7.1"/>
    <category term="cpe:/a:gajim:gajim:0.8"/>
    <category term="cpe:/a:gajim:gajim:0.8.1"/>
    <category term="cpe:/a:gajim:gajim:0.8.2"/>
    <category term="cpe:/a:gajim:gajim:0.9"/>
    <category term="cpe:/a:gajim:gajim:0.9.1"/>
    <sec:identifier>CVE-2012-2086</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1167:jboss_enterprise_application_platform, jboss_enterprise_brms_platform, jboss_ente...: The JBoss Server in JBoss Enterprise Application Pl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1167_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1167_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1167_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The JBoss Server in JBoss Enterprise Application Platform 5.1.x before 5.1.2 and 5.2.x before 5.2.2, Web Platform before 5.1.2, BRMS Platform before 5.3.0, and SOA Platform before 5.3.0, when the server is configured to use the JaccAuthorizationRealm and the ignoreBaseDecision property is set to true on the JBossWebRealm, does not properly check the permissions created by the WebPermissionMapping class, which allows remote authenticated users to access arbitrary applications.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1167_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.2.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform:5.2.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.2"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.2.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform:5.1.1 and previous versions"/>
    <sec:identifier>CVE-2012-1167</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0818:resteasy: RESTEasy before 2.3.1 allows remote attackers to re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0818_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0818_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0818_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0818_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:resteasy:1.0.0"/>
    <category term="cpe:/a:redhat:resteasy:1.0.1"/>
    <category term="cpe:/a:redhat:resteasy:1.0.2"/>
    <category term="cpe:/a:redhat:resteasy:1.1"/>
    <category term="cpe:/a:redhat:resteasy:1.2"/>
    <category term="cpe:/a:redhat:resteasy:2.0.0"/>
    <category term="cpe:/a:redhat:resteasy:2.0.1"/>
    <category term="cpe:/a:redhat:resteasy:2.1.0"/>
    <category term="cpe:/a:redhat:resteasy:2.2.0"/>
    <category term="cpe:/a:redhat:resteasy:2.2.1"/>
    <category term="cpe:/a:redhat:resteasy:2.2.2"/>
    <category term="cpe:/a:redhat:resteasy:2.2.3"/>
    <category term="cpe:/a:redhat:resteasy:2.3.0 and previous versions"/>
    <sec:identifier>CVE-2012-0818</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5245:resteasy: The readFrom function in providers.jaxb.JAXBXmlType...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5245_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5245_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5245_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Binding (JAXB) input, aka an XML external entity (XXE) injection attack, a similar vulnerability to CVE-2012-0818.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5245_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:resteasy:1.0.0"/>
    <category term="cpe:/a:redhat:resteasy:1.0.1"/>
    <category term="cpe:/a:redhat:resteasy:1.0.2"/>
    <category term="cpe:/a:redhat:resteasy:1.1"/>
    <category term="cpe:/a:redhat:resteasy:1.2"/>
    <category term="cpe:/a:redhat:resteasy:2.0.0"/>
    <category term="cpe:/a:redhat:resteasy:2.0.1"/>
    <category term="cpe:/a:redhat:resteasy:2.1.0"/>
    <category term="cpe:/a:redhat:resteasy:2.2.0"/>
    <category term="cpe:/a:redhat:resteasy:2.2.1"/>
    <category term="cpe:/a:redhat:resteasy:2.2.2"/>
    <category term="cpe:/a:redhat:resteasy:2.2.3"/>
    <category term="cpe:/a:redhat:resteasy:2.3.0"/>
    <category term="cpe:/a:redhat:resteasy:2.3.1 and previous versions"/>
    <sec:identifier>CVE-2011-5245</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-4605:jboss_enterprise_application_platform, jboss_enterprise_brms_platform, jboss_ente...: The (1) JNDI service, (2) HA-JNDI service, and (3) ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4605_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4605_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4605_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) JNDI service, (2) HA-JNDI service, and (3) HAJNDIFactory invoker servlet in JBoss Enterprise Application Platform 4.3.0 CP10 and 5.1.2, Web Platform 5.1.2, SOA Platform 4.2.0.CP05 and 4.3.0.CP05, Portal Platform 4.3 CP07 and 5.2.x before 5.2.2, and BRMS Platform before 5.3.0 do not properly restrict write access, which allows remote attackers to add, delete, or modify items in a JNDI tree via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4605_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:4.3.0:cp10"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.2"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform:5.2.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:4.3.0:cp07"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform:5.1.2"/>
    <sec:identifier>CVE-2011-4605</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-4085:jboss_enterprise_application_platform, jboss_enterprise_soa_platform, jboss_enter...: The servlets invoked by httpha-invoker in JBoss Ent...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4085_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4085_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4085_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The servlets invoked by httpha-invoker in JBoss Enterprise Application Platform before 5.1.2, SOA Platform before 5.2.0, BRMS Platform before 5.3.0, and Portal Platform before 4.3 CP07 perform access control only for the GET and POST methods, which allow remote attackers to bypass authentication by sending a request with a different method.  NOTE: this vulnerability exists because of a CVE-2010-0738 regression.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4085_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:4.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:4.3.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.1 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform:5.2.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:4.3.0 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp01"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp03"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp04"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.2.0:tp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp01"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp02"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp03"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp04"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:4.3.0:cp05"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.0.2"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.1.1 and previous versions"/>
    <sec:identifier>CVE-2011-4085</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2908:jboss_enterprise_brms_platform, jboss_enterprise_portal_platform, jboss_enterpris...: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2908_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2908_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2908_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the JMX Console (jmx-console) in JBoss Enterprise Portal Platform before 5.2.2, BRMS Platform 5.3.0 before roll up patch1, and SOA Platform 5.3.0 allows remote authenticated users to hijack the authentication of arbitrary users for requests that perform operations on MBeans and possibly execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2908_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_brms_platform:5.3.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.1 and previous versions"/>
    <category term="cpe:/a:redhat:jboss_enterprise_soa_platform:5.3.0"/>
    <sec:identifier>CVE-2011-2908</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-1096:jboss_enterprise_portal_platform: The W3C XML Encryption Standard, as used in the JBo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1096_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1096_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1096_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The W3C XML Encryption Standard, as used in the JBoss Web Services (JBossWS) component in JBoss Enterprise Portal Platform before 5.2.2 and other products, when using block ciphers in cipher-block chaining (CBC) mode, allows remote attackers to obtain plaintext data via a chosen-ciphertext attack on SOAP responses, aka &quot;character encoding pattern attack.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1096_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.0.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.1.1"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.0"/>
    <category term="cpe:/a:redhat:jboss_enterprise_portal_platform:5.2.1 and previous versions"/>
    <sec:identifier>CVE-2011-1096</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-1330:jruby: The regular expression engine in JRuby before 1.4.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-1330_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-1330_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-1330_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The regular expression engine in JRuby before 1.4.1, when $KCODE is set to 'u', does not properly handle characters immediately after a UTF-8 character, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-1330_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jruby:jruby:0.9.0"/>
    <category term="cpe:/a:jruby:jruby:0.9.1"/>
    <category term="cpe:/a:jruby:jruby:0.9.2"/>
    <category term="cpe:/a:jruby:jruby:0.9.8"/>
    <category term="cpe:/a:jruby:jruby:0.9.9"/>
    <category term="cpe:/a:jruby:jruby:1.0"/>
    <category term="cpe:/a:jruby:jruby:1.0.0:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.0.0:rc2"/>
    <category term="cpe:/a:jruby:jruby:1.0.0:rc3"/>
    <category term="cpe:/a:jruby:jruby:1.0.1"/>
    <category term="cpe:/a:jruby:jruby:1.0.2"/>
    <category term="cpe:/a:jruby:jruby:1.0.3"/>
    <category term="cpe:/a:jruby:jruby:1.1"/>
    <category term="cpe:/a:jruby:jruby:1.1.1"/>
    <category term="cpe:/a:jruby:jruby:1.1.2"/>
    <category term="cpe:/a:jruby:jruby:1.1.3"/>
    <category term="cpe:/a:jruby:jruby:1.1.4"/>
    <category term="cpe:/a:jruby:jruby:1.1.5"/>
    <category term="cpe:/a:jruby:jruby:1.1.6"/>
    <category term="cpe:/a:jruby:jruby:1.1.6:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.1:b1"/>
    <category term="cpe:/a:jruby:jruby:1.1:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.1:rc2"/>
    <category term="cpe:/a:jruby:jruby:1.1:rc3"/>
    <category term="cpe:/a:jruby:jruby:1.2.0"/>
    <category term="cpe:/a:jruby:jruby:1.2.0:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.2.0:rc2"/>
    <category term="cpe:/a:jruby:jruby:1.3.0"/>
    <category term="cpe:/a:jruby:jruby:1.3.0:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.3.0:rc2"/>
    <category term="cpe:/a:jruby:jruby:1.3.1"/>
    <category term="cpe:/a:jruby:jruby:1.4.0 and previous versions"/>
    <category term="cpe:/a:jruby:jruby:1.4.0:rc1"/>
    <category term="cpe:/a:jruby:jruby:1.4.0:rc2"/>
    <category term="cpe:/a:jruby:jruby:1.4.0:rc3"/>
    <sec:identifier>CVE-2010-1330</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2084:print: Cross-site scripting (XSS) vulnerability in the Pri...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2084_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2084_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2084_AD_1.html</id>
    <published>2012-11-22T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Printer, email and PDF versions module 6.x-1.x before 6.x-1.15 and 7.x-1.x before 7.x-1.0 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably the PATH_INFO.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2084_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc1"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc2"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc3"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc4"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc5"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc8"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.0:rc9"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.1"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.10"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.11"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.11:beta1"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.12"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.13"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.14"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.2"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.3"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.4"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.5"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.6"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.7"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.8"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.9"/>
    <category term="cpe:/a:joao_ventura:print:6.x-1.x:dev"/>
    <category term="cpe:/a:joao_ventura:print:7.x-10:alpha1"/>
    <category term="cpe:/a:joao_ventura:print:7.x-10:alpha2"/>
    <category term="cpe:/a:joao_ventura:print:7.x-10:beta1"/>
    <category term="cpe:/a:joao_ventura:print:7.x-10:beta2"/>
    <category term="cpe:/a:joao_ventura:print:7.x-10:dev"/>
    <sec:identifier>CVE-2012-2084</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5864:esolar_duo_photovoltaic_system_monitor, esolar_light_photovoltaic_system_monitor,...: The management web pages on the Sinapsi eSolar Ligh...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5864_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5864_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5864_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The management web pages on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 do not require authentication, which allows remote attackers to obtain administrative access via a direct request, as demonstrated by a request to ping.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5864_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor:-"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware:2.0.2870 and previous versions"/>
    <sec:identifier>CVE-2012-5864</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5863:esolar_duo_photovoltaic_system_monitor, esolar_light_photovoltaic_system_monitor,...: ping.php on the Sinapsi eSolar Light Photovoltaic S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5863_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5863_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5863_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ping.php on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in the ip_dominio parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5863_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor:-"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware:2.0.2870 and previous versions"/>
    <sec:identifier>CVE-2012-5863</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5862:esolar_duo_photovoltaic_system_monitor, esolar_light_photovoltaic_system_monitor,...: login.php on the Sinapsi eSolar Light Photovoltaic ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5862_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5862_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5862_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
login.php on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 establishes multiple hardcoded accounts, which makes it easier for remote attackers to obtain administrative access by leveraging a (1) cleartext password or (2) password hash contained in this script, as demonstrated by a password of astridservice or 36e44c9b64.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5862_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor:-"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware:2.0.2870 and previous versions"/>
    <sec:identifier>CVE-2012-5862</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5861:esolar_duo_photovoltaic_system_monitor, esolar_light_photovoltaic_system_monitor,...: Multiple SQL injection vulnerabilities on the Sinap...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5861_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5861_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5861_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 allow remote attackers to execute arbitrary SQL commands via (1) the inverterselect parameter in a primo action to dettagliinverter.php or (2) the lingua parameter to changelanguagesession.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5861_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sinapsitech:esolar_duo_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_light_photovoltaic_system_monitor:-"/>
    <category term="cpe:/h:sinapsitech:esolar_photovoltaic_system_monitor:-"/>
    <category term="cpe:/o:sinapsitech:sinapsi_firmware:2.0.2870 and previous versions"/>
    <sec:identifier>CVE-2012-5861</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5759:websphere_datapower_xc10_appliance: The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5759_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5759_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5759_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 allows remote authenticated users to bypass intended administrative-role requirements and perform arbitrary JMX operations via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5759_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.2"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.3"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.2"/>
    <sec:identifier>CVE-2012-5759</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5758:websphere_datapower_xc10_appliance: The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5758_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5758_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5758_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 does not require authentication for an unspecified interface, which allows remote attackers to cause a denial of service (process exit) via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5758_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.2"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.3"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.2"/>
    <sec:identifier>CVE-2012-5758</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5756:websphere_datapower_xc10_appliance: The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5756_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5756_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5756_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2, when a collective configuration is enabled, has a single secret key that is shared across different customers' installations, which allows remote attackers to spoof a container server by (1) sniffing the network to locate a cleartext transmission of this key or (2) leveraging knowledge of this key from another installation.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5756_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.2"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.0.0.3"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.0"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.1"/>
    <category term="cpe:/h:ibm:websphere_datapower_xc10_appliance:2.1.0.2"/>
    <sec:identifier>CVE-2012-5756</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5173:bigace: Session fixation vulnerability in BIGACE before 2.7...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5173_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5173_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5173_AD_1.html</id>
    <published>2012-11-23T00:00:00+09:00</published>
    <updated>2012-11-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5173_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bigace:bigace:2.7.2"/>
    <category term="cpe:/a:bigace:bigace:2.7.4"/>
    <category term="cpe:/a:bigace:bigace:2.7.5"/>
    <category term="cpe:/a:bigace:bigace:2.7.6"/>
    <category term="cpe:/a:bigace:bigace:2.7.7 and previous versions"/>
    <sec:identifier>CVE-2012-5173</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005486:JP1/Automatic Job Management System 3 &#12362;&#12424;&#12403; JP1/Automatic Job Management System 2 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005486_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005486_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005486_AD_1.html</id>
    <published>2012-11-22T16:06:54+09:00</published>
    <updated>2012-11-22T16:06:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JP1/Automatic Job Management System 3 および JP1/Automatic Job Management System 2 には、サービス運用妨害 (DoS) の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005486_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:jp1_automatic_job_management_system_2"/>
    <category term="cpe:/a:hitachi:jp1_automatic_job_management_system_3"/>
    <sec:identifier>JVNDB-2012-005486</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005485:Hitachi Device Manager Software &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005485_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005485_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005485_AD_1.html</id>
    <published>2012-11-22T16:05:25+09:00</published>
    <updated>2012-11-22T16:05:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Hitachi Device Manager Software (HDvM) 製品 には、大量のデータを一度に受信した場合、サービス運用妨害 (異常終了) 状態となる脆弱性が存在します。  なお、異常終了した場合は、HDvM のサービスまたはデーモンを再起動することで、使用を再開できます。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005485_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:hitachi_device_manager_software"/>
    <sec:identifier>JVNDB-2012-005485</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005484:Moodle &#12395;&#12362;&#12369;&#12427;&#20840;&#12390;&#12398;&#12465;&#12452;&#12497;&#12499;&#12522;&#12486;&#12451;&#12487;&#12540;&#12479;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005484_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005484_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005484_AD_1.html</id>
    <published>2012-11-22T15:30:25+09:00</published>
    <updated>2012-11-22T15:30:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle には、moodle/role:manage ケイパビリティの要求を回避され、全てのケイパビリティデータを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005484_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005484</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005483:Moodle &#12395;&#12362;&#12369;&#12427;&#20182;&#12398;&#21442;&#21152;&#32773;&#12398;&#12456;&#12531;&#12488;&#12522;&#12398;&#38322;&#35239;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005483_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005483_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005483_AD_1.html</id>
    <published>2012-11-22T15:21:23+09:00</published>
    <updated>2012-11-22T15:21:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle のデータベース活動 (Database activity) モジュールには、他の参加者のエントリの閲覧制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005483_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005483</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005482:Moodle &#12398; Portfolio &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12434;&#12450;&#12483;&#12503;&#12525;&#12540;&#12489;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005482_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005482_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005482_AD_1.html</id>
    <published>2012-11-22T15:19:34+09:00</published>
    <updated>2012-11-22T15:19:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle の Portfolio プラグインには、ファイルをアップロードされ、実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005482_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005482</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005481:Moodle &#12395;&#12362;&#12369;&#12427;&#30064;&#12394;&#12427;&#12464;&#12523;&#12540;&#12503;&#12518;&#12540;&#12470;&#12398;&#27963;&#21205;&#12456;&#12531;&#12488;&#12522;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005481_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005481_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005481_AD_1.html</id>
    <published>2012-11-22T15:18:55+09:00</published>
    <updated>2012-11-22T15:18:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle のデータベース活動 (Database activity) モジュールには、異なるグループユーザの活動エントリを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005481_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005481</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005480:Moodle &#12398; lib/formslib.php &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005480_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005480_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005480_AD_1.html</id>
    <published>2012-11-22T15:16:32+09:00</published>
    <updated>2012-11-22T15:16:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle の lib/formslib.php には、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005480_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005480</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005479:Moodle &#12398; Dropbox Repository File Picker &#12395;&#12362;&#12369;&#12427;&#30064;&#12394;&#12427;&#12518;&#12540;&#12470;&#12398; Dropbox &#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005479_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005479_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005479_AD_1.html</id>
    <published>2012-11-22T15:15:50+09:00</published>
    <updated>2012-11-22T15:15:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moodle の Dropbox Repository File Picker には、異なるユーザの Dropbox にアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005479_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle"/>
    <sec:identifier>JVNDB-2012-005479</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005478:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398;&#12502;&#12521;&#12454;&#12470;&#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005478_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005478_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005478_AD_1.html</id>
    <published>2012-11-22T15:14:12+09:00</published>
    <updated>2012-11-22T15:14:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品のブラウザエンジンには、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005478_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005478</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005477:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398;&#12502;&#12521;&#12454;&#12470;&#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005477_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005477_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005477_AD_1.html</id>
    <published>2012-11-22T15:13:08+09:00</published>
    <updated>2012-11-22T15:13:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品のブラウザエンジンには、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005477_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005477</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005476:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005476_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005476_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005476_AD_1.html</id>
    <published>2012-11-22T15:11:20+09:00</published>
    <updated>2012-11-22T15:11:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品のフィルタリングを行うクロスオリジンラッパーの実装は、書き込み操作を適切に制限しないため、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005476_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005476</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005475:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsTextEditorState::PrepareEditor &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005475_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005475_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005475_AD_1.html</id>
    <published>2012-11-22T15:06:47+09:00</published>
    <updated>2012-11-22T15:06:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsTextEditorState::PrepareEditor 関数には、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-4214 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005475_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005475</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005474:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005474_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005474_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005474_AD_1.html</id>
    <published>2012-11-22T15:05:55+09:00</published>
    <updated>2012-11-22T15:05:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の gfxShapedWord::CompressedGlyph::IsClusterStart 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005474_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005474</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005473:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; WebGL &#12469;&#12502;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005473_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005473_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005473_AD_1.html</id>
    <published>2012-11-22T15:04:52+09:00</published>
    <updated>2012-11-22T15:04:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の WebGL サブシステムの copyTexImage2D の実装には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005473_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005473</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005472:Mozilla Firefox &#12398; Web &#38283;&#30330;&#12484;&#12540;&#12523;&#12496;&#12540;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005472_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005472_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005472_AD_1.html</id>
    <published>2012-11-22T15:03:42+09:00</published>
    <updated>2012-11-22T15:03:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mozilla Firefox の Web 開発ツールバーは、クローム特権でスクリプトを実行するため、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005472_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <sec:identifier>JVNDB-2012-005472</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005471:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005471_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005471_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005471_AD_1.html</id>
    <published>2012-11-22T15:02:37+09:00</published>
    <updated>2012-11-22T15:02:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、任意のコードを実行される、またはサービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005471_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005471</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005470:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; WebGL &#12469;&#12502;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005470_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005470_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005470_AD_1.html</id>
    <published>2012-11-22T15:00:15+09:00</published>
    <updated>2012-11-22T15:00:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の WebGL サブシステムには、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005470_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005470</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005469:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; WebGL &#12469;&#12502;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005469_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005469_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005469_AD_1.html</id>
    <published>2012-11-22T14:58:59+09:00</published>
    <updated>2012-11-22T14:58:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の WebGL サブシステム内の texImage2D の実装は、Mesa ドライバと適切に対話処理しないため、任意のコードを実行される、またはサービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005469_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005469</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005468:Mac OS X &#19978;&#12391;&#31292;&#20685;&#12377;&#12427;&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005468_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005468_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005468_AD_1.html</id>
    <published>2012-11-22T14:55:55+09:00</published>
    <updated>2012-11-22T14:55:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で稼働する複数の Mozilla 製品には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005468_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005468</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005467:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsWindow::OnExposeEvent &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005467_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005467_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005467_AD_1.html</id>
    <published>2012-11-22T14:49:40+09:00</published>
    <updated>2012-11-22T14:49:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsWindow::OnExposeEvent 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005467_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005467</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005466:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; BuildTextRunsScanner::BreakSink::SetBreaks &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005466_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005466_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005466_AD_1.html</id>
    <published>2012-11-22T14:45:51+09:00</published>
    <updated>2012-11-22T14:45:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の BuildTextRunsScanner::BreakSink::SetBreaks 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005466_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005466</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005465:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsViewManager::ProcessPendingUpdates &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005465_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005465_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005465_AD_1.html</id>
    <published>2012-11-22T14:40:24+09:00</published>
    <updated>2012-11-22T14:40:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsViewManager::ProcessPendingUpdates 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005465_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005465</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005464:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; gfxFont::GetFontEntry &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005464_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005464_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005464_AD_1.html</id>
    <published>2012-11-22T14:39:39+09:00</published>
    <updated>2012-11-22T14:39:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の gfxFont::GetFontEntry 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005464_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005464</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005463:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsPlaintextEditor::FireClipboardEvent &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005463_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005463_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005463_AD_1.html</id>
    <published>2012-11-22T14:38:46+09:00</published>
    <updated>2012-11-22T14:38:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsPlaintextEditor::FireClipboardEvent 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005463_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005463</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005462:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsTextEditorState::PrepareEditor &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005462_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005462_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005462_AD_1.html</id>
    <published>2012-11-22T14:38:09+09:00</published>
    <updated>2012-11-22T14:38:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsTextEditorState::PrepareEditor 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-5840 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005462_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005462</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005461:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsEditor::FindNextLeafNode &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005461_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005461_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005461_AD_1.html</id>
    <published>2012-11-22T14:36:16+09:00</published>
    <updated>2012-11-22T14:36:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsEditor::FindNextLeafNode 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005461_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005461</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005460:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005460_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005460_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005460_AD_1.html</id>
    <published>2012-11-22T14:34:13+09:00</published>
    <updated>2012-11-22T14:34:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の XPCWrappedNative::Mark 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005460_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005460</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005459:Mozilla Firefox &#12362;&#12424;&#12403; Firefox ESR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; JavaScript &#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005459_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005459_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005459_AD_1.html</id>
    <published>2012-11-22T14:27:39+09:00</published>
    <updated>2012-11-22T14:27:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mozilla Firefox および Firefox ESR のスタイルインスペクタは、HTML マークアップおよび Cascading Style Sheets (CSS) トークンシーケンスのコンテキストを適切に制限しないため、クローム特権を持つ任意の JavaScript コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005459_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <sec:identifier>JVNDB-2012-005459</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005458:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005458_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005458_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005458_AD_1.html</id>
    <published>2012-11-22T14:10:54+09:00</published>
    <updated>2012-11-22T14:10:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、location プロパティへアクセスするフレームの name 属性の &quot;top&quot; 値の使用を適切に制限しないため、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005458_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005458</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005457:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; XrayWrapper &#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12540;&#12512;&#23554;&#29992;&#12398;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005457_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005457_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005457_AD_1.html</id>
    <published>2012-11-22T14:05:37+09:00</published>
    <updated>2012-11-22T14:05:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の XrayWrapper の実装は、プロパティのフィルタリングの間、コンパートメントを考慮しないため、DOM オブジェクトのプロパティの読み込みにおいてクローム専用 (chrome-only) の制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005457_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005457</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005456:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005456_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005456_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005456_AD_1.html</id>
    <published>2012-11-22T12:09:41+09:00</published>
    <updated>2012-11-22T12:09:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の HZ-GB-2312 文字セットの実装は、チャンクの区切り文字の近くにある ~ (チルダ) を適切に処理しないため、クロスサイトスクリプティング攻撃をされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005456_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005456</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005455:Mozilla Firefox &#12398;&#12452;&#12531;&#12473;&#12488;&#12540;&#12521;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005455_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005455_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005455_AD_1.html</id>
    <published>2012-11-22T12:08:55+09:00</published>
    <updated>2012-11-22T12:08:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mozilla Firefox のインストーラには、検索パスに関する処理に不備があるため、権限を取得される脆弱性が存在します。  補足情報 : CWE による脆弱性タイプは、CWE-426: Untrusted Search Path (信頼性のない検索パス) と識別されています。 http://cwe.mitre.org/data/definitions/426.html&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005455_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <sec:identifier>JVNDB-2012-005455</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005454:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005454_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005454_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005454_AD_1.html</id>
    <published>2012-11-22T12:08:26+09:00</published>
    <updated>2012-11-22T12:08:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、サンドボックス内で作成された XMLHttpRequest オブジェクトに、サンドボックスのプリンシパルではなく、システムのプリンシパルを割り当てるため、クロスサイトリクエストフォージェリ攻撃を実行される、または重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005454_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005454</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005453:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; JavaScript &#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005453_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005453_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005453_AD_1.html</id>
    <published>2012-11-22T12:07:45+09:00</published>
    <updated>2012-11-22T12:07:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の JavaScript エンジンの str_unescape 関数には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005453_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-005453</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005452:Mozilla Firefox &#12398;&#26032;&#12375;&#12356;&#12479;&#12502;&#12506;&#12540;&#12472;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12503;&#12525;&#12464;&#12521;&#12512;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005452_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005452_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005452_AD_1.html</id>
    <published>2012-11-22T12:07:17+09:00</published>
    <updated>2012-11-22T12:07:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mozilla Firefox の新しいタブページは、ブックマークレットによる JavaScript コードの実行に特権コンテキストを使用するため、任意のプログラムを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005452_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <sec:identifier>JVNDB-2012-005452</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005451:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; image::RasterImage::DrawFrameTo &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005451_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005451_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005451_AD_1.html</id>
    <published>2012-11-22T12:05:25+09:00</published>
    <updated>2012-11-22T12:05:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の image::RasterImage::DrawFrameTo 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005451_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005451</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005450:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; evalInSandbox &#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005450_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005450_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005450_AD_1.html</id>
    <published>2012-11-22T12:04:44+09:00</published>
    <updated>2012-11-22T12:04:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の evalInSandbox の実装は、location.href を設定する JavaScript コードの処理中に不正なコンテキストを使用するため、クロスサイトスクリプティング攻撃を実行される、または任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005450_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005450</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2211:egroupware: Cross-site scripting (XSS) vulnerability in phpgwap...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2211_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2211_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2211_AD_1.html</id>
    <published>2012-11-22T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 allows remote attackers to inject arbitrary web script or HTML via the menuaction parameter to etemplate/process_exec.php.  NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2211_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:egroupware:egroupware:1.8.002.20111111 and previous versions"/>
    <sec:identifier>CVE-2012-2211</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5526:cgi.pm: CGI.pm module before 3.63 for Perl does not properl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5526_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5526_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5526_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might allow remote attackers to inject arbitrary headers into responses from applications that use CGI.pm.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5526_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:andy_armstrong:cgi.pm:3.62 and previous versions"/>
    <sec:identifier>CVE-2012-5526</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4539:xen: Xen 4.0 through 4.2, when running 32-bit x86 PV gue...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4539_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4539_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4539_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments to GNTTABOP_get_status_frames, aka &quot;Grant table hypercall infinite loop DoS vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4539_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-4539</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4537:xen: Xen 3.4 through 4.2, and possibly earlier versions,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4537_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4537_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4537_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2m_entry function fails, which allows local HVM guest OS administrators to cause a denial of service (memory consumption and assertion failure), aka &quot;Memory mapping failure DoS vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4537_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-4537</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4536:xen: The (1) domain_pirq_to_emuirq and (2) physdev_unmap...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4536_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4536_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4536_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to cause a denial of service (Xen crash) via a crafted pirq value that triggers an out-of-bounds read.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4536_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:2.2.0"/>
    <sec:identifier>CVE-2012-4536</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4535:xen: Xen 3.4 through 4.2, and possibly earlier versions,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4535_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4535_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4535_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (Xen infinite loop and physical CPU consumption) by setting a VCPU with an &quot;inappropriate deadline.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4535_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:3.4.0"/>
    <category term="cpe:/o:xen:xen:3.4.1"/>
    <category term="cpe:/o:xen:xen:3.4.2"/>
    <category term="cpe:/o:xen:xen:3.4.3"/>
    <category term="cpe:/o:xen:xen:3.4.4"/>
    <category term="cpe:/o:xen:xen:4.0.0"/>
    <category term="cpe:/o:xen:xen:4.0.1"/>
    <category term="cpe:/o:xen:xen:4.0.2"/>
    <category term="cpe:/o:xen:xen:4.0.3"/>
    <category term="cpe:/o:xen:xen:4.0.4"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-4535</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4527:mcrypt: Stack-based buffer overflow in mcrypt 2.6.8 and ear...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4527_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4527_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4527_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file name.  NOTE: it is not clear whether this is a vulnerability.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4527_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt:2.6.8 and previous versions"/>
    <sec:identifier>CVE-2012-4527</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4426:mcrypt: Multiple format string vulnerabilities in mcrypt 2....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4426_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4426_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4426_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via vectors involving (1) errors.c or (2) mcrypt.c.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4426_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt:2.6.8 and previous versions"/>
    <sec:identifier>CVE-2012-4426</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4409:mcrypt: Stack-based buffer overflow in the check_file_head ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4409_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4409_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4409_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to execute arbitrary code via an encrypted file with a crafted header containing long salt data that is not properly handled during decryption.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4409_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mcrypt:mcrypt:2.6.8 and previous versions"/>
    <sec:identifier>CVE-2012-4409</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3513:munin: munin-cgi-graph in Munin before 2.0.6, when running...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3513_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3513_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3513_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3513_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:munin-monitoring:munin:2.0.6 and previous versions"/>
    <sec:identifier>CVE-2012-3513</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3512:munin: Munin before 2.0.6 stores plugin state files that r...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3512_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3512_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3512_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, which allows local users to execute arbitrary code by replacing a state file, as demonstrated using the smart_ plugin.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3512_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:munin-monitoring:munin:2.0.6 and previous versions"/>
    <sec:identifier>CVE-2012-3512</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005449:VMware ESXi &#12362;&#12424;&#12403; ESX &#12398; vSphere API &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005449_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005449_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005449_AD_1.html</id>
    <published>2012-11-21T15:40:21+09:00</published>
    <updated>2012-11-21T15:40:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VMware ESXi および ESX の vSphere API には、サービス運用妨害 (ホストデーモンクラッシュ) の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005449_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:esx_server"/>
    <category term="cpe:/a:vmware:esxi"/>
    <sec:identifier>JVNDB-2012-005449</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005448:Adobe ColdFusion &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005448_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005448_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005448_AD_1.html</id>
    <published>2012-11-21T15:37:54+09:00</published>
    <updated>2012-11-21T15:37:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe ColdFusion には、Internet Information Services (IIS) 上で使用される場合、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005448_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:coldfusion"/>
    <sec:identifier>JVNDB-2012-005448</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005447:Google Web Toolkit &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005447_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005447_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005447_AD_1.html</id>
    <published>2012-11-21T15:37:21+09:00</published>
    <updated>2012-11-21T15:37:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Web Toolkit (GWT) には、クロスサイトスクリプティングの脆弱性が存在します。  本問題は CVE-2012-4563 の修正が不完全だったことによる問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005447_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:web_toolkit"/>
    <sec:identifier>JVNDB-2012-005447</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005446:Firebird &#12398; TraceManager &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005446_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005446_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005446_AD_1.html</id>
    <published>2012-11-21T15:36:45+09:00</published>
    <updated>2012-11-21T15:36:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Firebird の TraceManager には、trace が有効になっている場合、サービス運用妨害 (NULL ポインタデリファレンスおよびクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005446_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:firebirdsql:firebird"/>
    <sec:identifier>JVNDB-2012-005446</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005445:CUPS &#12395;&#12362;&#12369;&#12427; root &#12392;&#12375;&#12390;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005445_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005445_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005445_AD_1.html</id>
    <published>2012-11-21T15:34:35+09:00</published>
    <updated>2012-11-21T15:34:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CUPS は、Debian GNU/Linux のような特定の Linux ディストリビューションにおいて稼働する場合、特定のパーミッションを使用する /var/run/cups/certs/0 内に管理者鍵を保存するため、root として任意のファイルを読まれる、または書き込まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005445_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:cups"/>
    <sec:identifier>JVNDB-2012-005445</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005444:Google Web Toolkit &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005444_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005444_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005444_AD_1.html</id>
    <published>2012-11-21T15:32:09+09:00</published>
    <updated>2012-11-21T15:32:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Web Toolkit (GWT) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005444_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:web_toolkit"/>
    <sec:identifier>JVNDB-2012-005444</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005443:radsecproxy &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005443_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005443_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005443_AD_1.html</id>
    <published>2012-11-21T15:28:36+09:00</published>
    <updated>2012-11-21T15:28:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
radsecproxy の DTLS サポートは、証明書チェーンを検証するために使用されているブロックとは関係のない CA 設定を持つ構成ブロックがある場合、証明書を適切に確認しないため、アクセス制限を回避され、クライアントになりすまされる脆弱性が存在します。  本脆弱性は、CVE-2012-4523 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005443_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uninett:radsecproxy"/>
    <sec:identifier>JVNDB-2012-005443</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005442:radsecproxy &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005442_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005442_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005442_AD_1.html</id>
    <published>2012-11-21T15:18:14+09:00</published>
    <updated>2012-11-21T15:18:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
radsecproxy は、証明書チェーンを検証するために使用されているブロックとは関係のない CA 設定を持つ構成ブロックがある場合、証明書を適切に確認しないため、アクセス制限を回避され、クライアントになりすまされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005442_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uninett:radsecproxy"/>
    <sec:identifier>JVNDB-2012-005442</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005441:cups-pk-helper &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005441_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005441_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005441_AD_1.html</id>
    <published>2012-11-21T14:19:12+09:00</published>
    <updated>2012-11-21T14:19:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
cups-pk-helper は、(1) cupsGetFile、および (2) cupsPutFile 関数の呼び出しを適切にラップしないため、CUPS リソースを利用する重要なファイルを読まれる、または上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005441_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper"/>
    <sec:identifier>JVNDB-2012-005441</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005440:&#35079;&#25968;&#12398; Belkin Wireless Router &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12493;&#12483;&#12488;&#12527;&#12540;&#12463;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005440_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005440_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005440_AD_1.html</id>
    <published>2012-11-21T14:17:29+09:00</published>
    <updated>2012-11-21T14:17:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Belkin Wireless Router 製品は、MAC アドレスに基づいた予測可能な WPA2-PSK パスフレーズをデフォルトで生成するため、ネットワークにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005440_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:belkin:n150_wireless_router"/>
    <category term="cpe:/h:belkin:n300_wireless_router"/>
    <category term="cpe:/h:belkin:n450_wireless_router"/>
    <category term="cpe:/h:belkin:n900_wireless_router"/>
    <sec:identifier>JVNDB-2012-005440</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005439:Fedora &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; DokuWiki &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005439_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005439_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005439_AD_1.html</id>
    <published>2012-11-21T14:14:40+09:00</published>
    <updated>2012-11-21T14:14:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Fedora で使用される DokuWiki の doku.php には、特定の PHP エラーレベルが設定された場合、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005439_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:andreas_gohr:dokuwiki"/>
    <category term="cpe:/o:fedoraproject:fedora"/>
    <sec:identifier>JVNDB-2012-005439</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005438:icecast &#12395;&#12362;&#12369;&#12427;&#21046;&#24481;&#25991;&#23383;&#12434;&#25407;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005438_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005438_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005438_AD_1.html</id>
    <published>2012-11-21T14:05:06+09:00</published>
    <updated>2012-11-21T14:05:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
icecast には、改行などの制御文字をエラーログに挿入される (error.log に新しい行を挿入される) 脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005438_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:icecast:icecast"/>
    <sec:identifier>JVNDB-2012-005438</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000104:BIGACE &#12395;&#12362;&#12369;&#12427;&#12475;&#12483;&#12471;&#12519;&#12531;&#22266;&#23450;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000104_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000104_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000104_AD_1.html</id>
    <published>2012-11-21T14:01:05+09:00</published>
    <updated>2012-11-21T14:01:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
BIGACE には、セッション固定の脆弱性が存在します。  BIGACE は、コンテンツ管理システム (CMS) です。BIGACE には、セッション固定の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: bogus.jp 東内 裕二 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000104_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bigace:bigace"/>
    <sec:identifier>JVNDB-2012-000104</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5843:firefox, thunderbird, seamonkey: Multiple unspecified vulnerabilities in the browser...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5843_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5843_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5843_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5843_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-5843</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5842:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Multiple unspecified vulnerabilities in the browser...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5842_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5842_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5842_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5842_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5842</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5841:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Mozilla Firefox before 17.0, Firefox ESR 10.x befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5841_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5841_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5841_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 implement cross-origin wrappers with a filtering behavior that does not properly restrict write actions, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5841_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5841</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5840:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsTextEditorSta...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5840_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5840_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5840_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-4214.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5840_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5840</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5839:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Heap-based buffer overflow in the gfxShapedWord::Co...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5839_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5839_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5839_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the gfxShapedWord::CompressedGlyph::IsClusterStart function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5839_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5839</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5838:firefox, thunderbird, seamonkey: The copyTexImage2D implementation in the WebGL subs...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5838_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5838_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5838_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The copyTexImage2D implementation in the WebGL subsystem in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via large image dimensions.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5838_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-5838</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5837:firefox: The Web Developer Toolbar in Mozilla Firefox before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5837_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5837_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5837_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Web Developer Toolbar in Mozilla Firefox before 17.0 executes script with chrome privileges, which allows user-assisted remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5837_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <sec:identifier>CVE-2012-5837</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5836:firefox, thunderbird, seamonkey: Mozilla Firefox before 17.0, Thunderbird before 17....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5836_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5836_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5836_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving the setting of Cascading Style Sheets (CSS) properties in conjunction with SVG text.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5836_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-5836</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5835:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Integer overflow in the WebGL subsystem in Mozilla ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5835_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5835_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5835_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (invalid write operation) via crafted data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5835_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5835</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5833:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: The texImage2D implementation in the WebGL subsyste...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5833_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5833_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5833_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The texImage2D implementation in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly interact with Mesa drivers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via function calls involving certain values of the level parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5833_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5833</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5830:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Use-after-free vulnerability in Mozilla Firefox bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5830_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5830_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5830_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 on Mac OS X allows remote attackers to execute arbitrary code via an HTML document.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5830_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>CVE-2012-5830</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5829:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Heap-based buffer overflow in the nsWindow::OnExpos...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5829_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5829_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5829_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the nsWindow::OnExposeEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5829_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-5829</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5481:moodle: Moodle 2.3.x before 2.3.3 allows remote authenticat...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5481_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5481_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5481_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Moodle 2.3.x before 2.3.3 allows remote authenticated users to bypass the moodle/role:manage capability requirement and read all capability data by visiting the Check Permissions page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5481_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle:2.3"/>
    <category term="cpe:/a:moodle:moodle:2.3.1"/>
    <category term="cpe:/a:moodle:moodle:2.3.2"/>
    <sec:identifier>CVE-2012-5481</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5480:moodle: The Database activity module in Moodle 2.1.x before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5480_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5480_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5480_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote attackers to bypass intended restrictions on reading other participants' entries via an advanced search.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5480_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle:2.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.2"/>
    <category term="cpe:/a:moodle:moodle:2.1.3"/>
    <category term="cpe:/a:moodle:moodle:2.1.4"/>
    <category term="cpe:/a:moodle:moodle:2.1.5"/>
    <category term="cpe:/a:moodle:moodle:2.1.6"/>
    <category term="cpe:/a:moodle:moodle:2.1.7"/>
    <category term="cpe:/a:moodle:moodle:2.1.8"/>
    <category term="cpe:/a:moodle:moodle:2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.1"/>
    <category term="cpe:/a:moodle:moodle:2.2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.3"/>
    <category term="cpe:/a:moodle:moodle:2.2.4"/>
    <category term="cpe:/a:moodle:moodle:2.2.5"/>
    <category term="cpe:/a:moodle:moodle:2.3"/>
    <category term="cpe:/a:moodle:moodle:2.3.1"/>
    <category term="cpe:/a:moodle:moodle:2.3.2"/>
    <sec:identifier>CVE-2012-5480</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5479:moodle: The Portfolio plugin in Moodle 2.1.x before 2.1.9, ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5479_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5479_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5479_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Portfolio plugin in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to upload and execute files via a modified Portfolio API callback.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5479_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle:2.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.2"/>
    <category term="cpe:/a:moodle:moodle:2.1.3"/>
    <category term="cpe:/a:moodle:moodle:2.1.4"/>
    <category term="cpe:/a:moodle:moodle:2.1.5"/>
    <category term="cpe:/a:moodle:moodle:2.1.6"/>
    <category term="cpe:/a:moodle:moodle:2.1.7"/>
    <category term="cpe:/a:moodle:moodle:2.1.8"/>
    <category term="cpe:/a:moodle:moodle:2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.1"/>
    <category term="cpe:/a:moodle:moodle:2.2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.3"/>
    <category term="cpe:/a:moodle:moodle:2.2.4"/>
    <category term="cpe:/a:moodle:moodle:2.2.5"/>
    <category term="cpe:/a:moodle:moodle:2.3"/>
    <category term="cpe:/a:moodle:moodle:2.3.1"/>
    <category term="cpe:/a:moodle:moodle:2.3.2"/>
    <sec:identifier>CVE-2012-5479</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5472:moodle: lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5472_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5472_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5472_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5472_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle:2.2.1"/>
    <category term="cpe:/a:moodle:moodle:2.2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.3"/>
    <category term="cpe:/a:moodle:moodle:2.2.4"/>
    <category term="cpe:/a:moodle:moodle:2.2.5"/>
    <category term="cpe:/a:moodle:moodle:2.3.1"/>
    <category term="cpe:/a:moodle:moodle:2.3.2"/>
    <sec:identifier>CVE-2012-5472</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5471:moodle: The Dropbox Repository File Picker in Moodle 2.1.x ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5471_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5471_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5471_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Dropbox Repository File Picker in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to access the Dropbox of a different user by leveraging an unattended workstation after a logout.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5471_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moodle:moodle:2.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.1"/>
    <category term="cpe:/a:moodle:moodle:2.1.2"/>
    <category term="cpe:/a:moodle:moodle:2.1.3"/>
    <category term="cpe:/a:moodle:moodle:2.1.4"/>
    <category term="cpe:/a:moodle:moodle:2.1.5"/>
    <category term="cpe:/a:moodle:moodle:2.1.6"/>
    <category term="cpe:/a:moodle:moodle:2.1.7"/>
    <category term="cpe:/a:moodle:moodle:2.1.8"/>
    <category term="cpe:/a:moodle:moodle:2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.1"/>
    <category term="cpe:/a:moodle:moodle:2.2.2"/>
    <category term="cpe:/a:moodle:moodle:2.2.3"/>
    <category term="cpe:/a:moodle:moodle:2.2.4"/>
    <category term="cpe:/a:moodle:moodle:2.2.5"/>
    <category term="cpe:/a:moodle:moodle:2.3"/>
    <category term="cpe:/a:moodle:moodle:2.3.1"/>
    <category term="cpe:/a:moodle:moodle:2.3.2"/>
    <sec:identifier>CVE-2012-5471</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4218:firefox, thunderbird, seamonkey: Use-after-free vulnerability in the BuildTextRunsSc...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4218_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4218_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4218_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the BuildTextRunsScanner::BreakSink::SetBreaks function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4218_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4218</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4217:firefox, thunderbird, seamonkey: Use-after-free vulnerability in the nsViewManager::...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4217_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4217_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4217_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsViewManager::ProcessPendingUpdates function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4217_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4217</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4216:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Use-after-free vulnerability in the gfxFont::GetFon...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4216_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4216_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4216_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the gfxFont::GetFontEntry function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4216_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4216</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4215:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsPlaintextEdit...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4215_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4215_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4215_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsPlaintextEditor::FireClipboardEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4215_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4215</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4214:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsTextEditorSta...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4214_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4214_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4214_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-5840.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4214_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4214</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4213:firefox, thunderbird, seamonkey: Use-after-free vulnerability in the nsEditor::FindN...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4213_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4213_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4213_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsEditor::FindNextLeafNode function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4213_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4213</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4212:firefox, thunderbird, seamonkey: Use-after-free vulnerability in the XPCWrappedNativ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4212_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4212_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4212_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the XPCWrappedNative::Mark function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4212_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4212</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4210:firefox, firefox_esr: The Style Inspector in Mozilla Firefox before 17.0 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4210_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4210_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4210_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Style Inspector in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 does not properly restrict the context of HTML markup and Cascading Style Sheets (CSS) token sequences, which allows user-assisted remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted stylesheet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4210_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4210</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4209:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Mozilla Firefox before 17.0, Firefox ESR 10.x befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4209_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4209_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4209_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do not prevent use of a &quot;top&quot; frame name-attribute value to access the location property, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors involving a binary plugin.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4209_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4209</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4208:firefox, thunderbird, seamonkey: The XrayWrapper implementation in Mozilla Firefox b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4208_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4208_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4208_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does not consider the compartment during property filtering, which allows remote attackers to bypass intended chrome-only restrictions on reading DOM object properties via a crafted web site.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4208_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4208</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4207:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: The HZ-GB-2312 character-set implementation in Mozi...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4207_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4207_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4207_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4207_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4207</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4206:firefox, firefox_esr: Untrusted search path vulnerability in the installe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4206_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4206_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4206_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 on Windows allows local users to gain privileges via a Trojan horse DLL in the default downloads directory.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4206_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-4206</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4205:firefox, thunderbird, seamonkey: Mozilla Firefox before 17.0, Thunderbird before 17....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4205_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4205_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4205_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 assign the system principal, rather than the sandbox principal, to XMLHttpRequest objects created in sandboxes, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks or obtain sensitive information by leveraging a sandboxed add-on.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4205_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4205</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4204:firefox, thunderbird, seamonkey: The str_unescape function in the JavaScript engine ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4204_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4204_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4204_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4204_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4204</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4203:firefox: The New Tab page in Mozilla Firefox before 17.0 use...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4203_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4203_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4203_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarklets, which allows user-assisted remote attackers to run arbitrary programs by leveraging a javascript: URL in a bookmark.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4203_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <sec:identifier>CVE-2012-4203</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4202:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Heap-based buffer overflow in the image::RasterImag...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4202_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4202_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4202_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via a crafted GIF image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4202_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4202</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4201:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: The evalInSandbox implementation in Mozilla Firefox...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4201_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4201_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4201_AD_1.html</id>
    <published>2012-11-21T00:00:00+09:00</published>
    <updated>2012-11-21T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 uses an incorrect context during the handling of JavaScript code that sets the location.href property, which allows remote attackers to conduct cross-site scripting (XSS) attacks or read arbitrary files by leveraging a sandboxed add-on.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4201_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0.2 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.14:beta5 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4201</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005437:Havalite &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005437_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005437_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005437_AD_1.html</id>
    <published>2012-11-20T18:17:13+09:00</published>
    <updated>2012-11-20T18:17:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Havalite には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005437_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms"/>
    <sec:identifier>JVNDB-2012-005437</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005436:razorCMS &#12395;&#12362;&#12369;&#12427;&#31649;&#29702;&#32773;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12362;&#12424;&#12403;&#12501;&#12449;&#12452;&#12523;&#12408;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005436_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005436_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005436_AD_1.html</id>
    <published>2012-11-20T18:16:31+09:00</published>
    <updated>2012-11-20T18:16:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
razorCMS には、管理者ディレクトリおよびファイルへアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005436_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms"/>
    <sec:identifier>JVNDB-2012-005436</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005435:WeeChat &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005435_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005435_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005435_AD_1.html</id>
    <published>2012-11-20T18:15:46+09:00</published>
    <updated>2012-11-20T18:15:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WeeChat には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005435_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:flashtux:weechat"/>
    <sec:identifier>JVNDB-2012-005435</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005434:Piwik &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005434_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005434_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005434_AD_1.html</id>
    <published>2012-11-20T18:12:08+09:00</published>
    <updated>2012-11-20T18:12:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Piwik には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005434_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:piwik:piwik"/>
    <sec:identifier>JVNDB-2012-005434</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005433:libvirt &#12398; virNetServerProgramDispatchCall &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005433_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005433_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005433_AD_1.html</id>
    <published>2012-11-20T18:11:29+09:00</published>
    <updated>2012-11-20T18:11:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libvirt の virNetServerProgramDispatchCall 関数 には、サービス運用妨害 (Null ポインタデリファレンスおよびセグメンテーション違反) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005433_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libvirt:libvirt"/>
    <sec:identifier>JVNDB-2012-005433</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005432:LibreOffice &#12362;&#12424;&#12403; OpenOffice.org &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005432_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005432_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005432_AD_1.html</id>
    <published>2012-11-20T18:10:50+09:00</published>
    <updated>2012-11-20T18:10:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
LibreOffice および OpenOffice.org (OOo) には、サービス運用妨害 (NULL ポインタデリファレンス) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005432_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libreoffice:libreoffice"/>
    <category term="cpe:/a:openoffice:openoffice.org"/>
    <sec:identifier>JVNDB-2012-005432</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005431:NVIDIA UNIX &#12464;&#12521;&#12501;&#12451;&#12483;&#12463;&#12473;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#29289;&#29702;&#12513;&#12514;&#12522;&#12525;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#26360;&#12365;&#36796;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005431_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005431_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005431_AD_1.html</id>
    <published>2012-11-20T18:09:15+09:00</published>
    <updated>2012-11-20T18:09:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
NVIDIA UNIX グラフィックスドライバには、任意の物理メモリロケーションへの書き込み、および権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005431_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nvidia:unix_graphic_driver"/>
    <sec:identifier>JVNDB-2012-005431</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005197:nspluginwrapper &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005197_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005197_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005197_AD_1.html</id>
    <published>2012-11-20T18:06:32+09:00</published>
    <updated>2012-11-20T18:06:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
nspluginwrapper は、プライベートブラウジングモードが実行されている場合、Firefox のプラグインを防止することができる NPNVprivateModeBool 変数設定へのアクセス権限を適切に付与しないため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005197_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nspluginwrapper:nspluginwrapper"/>
    <sec:identifier>JVNDB-2011-005197</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005196:&#35079;&#25968;&#12398;&#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; t1lib &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005196_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005196_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005196_AD_1.html</id>
    <published>2012-11-20T17:49:41+09:00</published>
    <updated>2012-11-20T17:49:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
teTeX、GNOME evince、およびその他の製品で使用される可能性がある t1lib の backend/dvi/mdvi-lib/afmparse.c 内の (1) token および (2) linetoken 関数には、一つずれエラー (Off-by-One error) により、サービス運用妨害 (クラッシュ) 状態になる、および任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2010-2642 および CVE-2011-0433 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005196_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:evince"/>
    <category term="cpe:/a:t1lib:t1lib"/>
    <category term="cpe:/a:tetex:tetex"/>
    <sec:identifier>JVNDB-2011-005196</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005195:&#35079;&#25968;&#12398;&#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; t1lib &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005195_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005195_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005195_AD_1.html</id>
    <published>2012-11-20T17:47:45+09:00</published>
    <updated>2012-11-20T17:47:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
teTeX、GNOME evince、およびその他の製品で使用される可能性がある t1lib の afmparse.c 内の linetoken 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2010-2642 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005195_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:evince"/>
    <category term="cpe:/a:t1lib:t1lib"/>
    <category term="cpe:/a:tetex:tetex"/>
    <sec:identifier>JVNDB-2011-005195</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005430:ViewVC &#12398; lib/viewvc.py &#20869;&#12398; diff &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005430_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005430_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005430_AD_1.html</id>
    <published>2012-11-20T17:43:04+09:00</published>
    <updated>2012-11-20T17:43:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ViewVC の lib/viewvc.py 内の diff 関数の余計な詳細 (extra details) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005430_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:viewvc:viewvc"/>
    <sec:identifier>JVNDB-2012-005430</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005429:PLIB &#12398; ssg/ssgParser.cxx &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005429_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005429_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005429_AD_1.html</id>
    <published>2012-11-20T17:31:17+09:00</published>
    <updated>2012-11-20T17:31:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PLIB の ssg/ssgParser.cxx の error 関数には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005429_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:steve_j_baker:plib"/>
    <sec:identifier>JVNDB-2012-005429</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005428:Django &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; URL &#12364;&#34920;&#31034;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005428_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005428_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005428_AD_1.html</id>
    <published>2012-11-20T17:30:05+09:00</published>
    <updated>2012-11-20T17:30:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Django の django.http.HttpRequest.get_host 関数には、任意の URL が生成されて、表示される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005428_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:djangoproject:django"/>
    <sec:identifier>JVNDB-2012-005428</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005427:GEGL &#12398; operations/external/ppm-load.c &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005427_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005427_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005427_AD_1.html</id>
    <published>2012-11-20T16:25:05+09:00</published>
    <updated>2012-11-20T16:25:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GEGL (Generic Graphics Library) の operations/external/ppm-load.c には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005427_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gegl:gegl"/>
    <sec:identifier>JVNDB-2012-005427</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005426:Red Hat Storage Server 2.0 &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; GlusterFS &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12365;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005426_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005426_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005426_AD_1.html</id>
    <published>2012-11-20T16:24:20+09:00</published>
    <updated>2012-11-20T16:24:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Red Hat Storage Server 2.0 で使用される GlusterFS には、任意のファイルを上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005426_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gluster:glusterfs"/>
    <sec:identifier>JVNDB-2012-005426</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005425:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005425_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005425_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005425_AD_1.html</id>
    <published>2012-11-20T15:31:31+09:00</published>
    <updated>2012-11-20T15:31:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk は、平文でデータベースの認証情報を格納するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005425_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005425</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005424:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005424_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005424_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005424_AD_1.html</id>
    <published>2012-11-20T15:30:45+09:00</published>
    <updated>2012-11-20T15:30:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk は、パスワード暗号化に XOR フォーマットを使用するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005424_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005424</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005423:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005423_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005423_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005423_AD_1.html</id>
    <published>2012-11-20T15:30:12+09:00</published>
    <updated>2012-11-20T15:30:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk には、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005423_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005423</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005422:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005422_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005422_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005422_AD_1.html</id>
    <published>2012-11-20T15:29:31+09:00</published>
    <updated>2012-11-20T15:29:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk は、ファイルをアップロードされることにより、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005422_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005422</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005421:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005421_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005421_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005421_AD_1.html</id>
    <published>2012-11-20T15:28:58+09:00</published>
    <updated>2012-11-20T15:28:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005421_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005421</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005420:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005420_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005420_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005420_AD_1.html</id>
    <published>2012-11-20T15:27:46+09:00</published>
    <updated>2012-11-20T15:27:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005420_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005420</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005419:Agile FleetCommander &#12362;&#12424;&#12403; FleetCommander Kiosk &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005419_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005419_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005419_AD_1.html</id>
    <published>2012-11-20T15:26:57+09:00</published>
    <updated>2012-11-20T15:26:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Agile FleetCommander および FleetCommander Kiosk には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005419_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk"/>
    <sec:identifier>JVNDB-2012-005419</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005418:Pattern Insight &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005418_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005418_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005418_AD_1.html</id>
    <published>2012-11-20T15:16:29+09:00</published>
    <updated>2012-11-20T15:16:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pattern Insight の Web インタフェースの Keyword Search (キーワード検索) ページには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005418_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight"/>
    <sec:identifier>JVNDB-2012-005418</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005417:Pattern Insight &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005417_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005417_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005417_AD_1.html</id>
    <published>2012-11-20T15:15:09+09:00</published>
    <updated>2012-11-20T15:15:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pattern Insight の Web インタフェースには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005417_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight"/>
    <sec:identifier>JVNDB-2012-005417</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005416:Pattern Insight &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427; Web &#12475;&#12483;&#12471;&#12519;&#12531;&#12434;&#12495;&#12452;&#12472;&#12515;&#12483;&#12463;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005416_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005416_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005416_AD_1.html</id>
    <published>2012-11-20T15:14:33+09:00</published>
    <updated>2012-11-20T15:14:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pattern Insight の Web インタフェースには、Web セッションをハイジャックされる脆弱性が存在します。  補足情報 : CWE による脆弱性タイプは、CWE-384: Session Fixation (セッションの固定化) と識別されています。 http://cwe.mitre.org/data/definitions/384.html&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005416_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight"/>
    <sec:identifier>JVNDB-2012-005416</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005415:Pattern Insight &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12522;&#12483;&#12463;&#12472;&#12515;&#12483;&#12461;&#12531;&#12464;&#25915;&#25731;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005415_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005415_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005415_AD_1.html</id>
    <published>2012-11-20T15:12:20+09:00</published>
    <updated>2012-11-20T15:12:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pattern Insight の Web インタフェースには、クリックジャッキング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005415_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight"/>
    <sec:identifier>JVNDB-2012-005415</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005414:Pattern Insight &#12398; Web &#12452;&#12531;&#12479;&#12501;&#12455;&#12540;&#12473;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005414_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005414_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005414_AD_1.html</id>
    <published>2012-11-20T15:10:18+09:00</published>
    <updated>2012-11-20T15:10:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pattern Insight の Web インタフェースには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005414_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight"/>
    <sec:identifier>JVNDB-2012-005414</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005413:PostgreSQL &#29992; PgBouncer pooler &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12540;&#12514;&#12531;&#12398;&#20572;&#27490;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005413_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005413_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005413_AD_1.html</id>
    <published>2012-11-20T15:00:13+09:00</published>
    <updated>2012-11-20T15:00:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PostgreSQL 用 PgBouncer pooler の objects.c の add_database 関数には、サービス運用妨害 (デーモンの停止) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005413_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:marko_kreen:pgbouncer"/>
    <sec:identifier>JVNDB-2012-005413</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005412:SnackAmp &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005412_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005412_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005412_AD_1.html</id>
    <published>2012-11-20T14:59:43+09:00</published>
    <updated>2012-11-20T14:59:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SnackAmp には、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005412_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tom_wilkason:snackamp"/>
    <sec:identifier>JVNDB-2012-005412</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005411:Neocrome Seditio &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005411_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005411_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005411_AD_1.html</id>
    <published>2012-11-20T14:59:11+09:00</published>
    <updated>2012-11-20T14:59:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Neocrome Seditio には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005411_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio"/>
    <sec:identifier>JVNDB-2012-005411</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005410:Neocrome Seditio &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005410_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005410_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005410_AD_1.html</id>
    <published>2012-11-20T14:58:35+09:00</published>
    <updated>2012-11-20T14:58:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Neocrome Seditio には、エラーメッセージ内にインストールパスを表示させるため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005410_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio"/>
    <sec:identifier>JVNDB-2012-005410</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005409:Neocrome Seditio &#12398; system/functions.php &#20869;&#12398; sed_import &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005409_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005409_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005409_AD_1.html</id>
    <published>2012-11-20T14:57:38+09:00</published>
    <updated>2012-11-20T14:57:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Neocrome Seditio の system/functions.php 内の sed_import 関数には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005409_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio"/>
    <sec:identifier>JVNDB-2012-005409</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005408:WordPress &#29992; WordPress Integrator &#12514;&#12472;&#12517;&#12540;&#12523;&#12398; wp-integrator.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005408_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005408_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005408_AD_1.html</id>
    <published>2012-11-20T14:56:36+09:00</published>
    <updated>2012-11-20T14:56:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 WordPress Integrator モジュールの wp-integrator.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005408_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress_integrator_project:wordpress_integrator"/>
    <sec:identifier>JVNDB-2012-005408</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005407:PicoPublisher &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005407_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005407_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005407_AD_1.html</id>
    <published>2012-11-20T14:55:58+09:00</published>
    <updated>2012-11-20T14:55:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PicoPublisher には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005407_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:pico:picopublisher"/>
    <sec:identifier>JVNDB-2012-005407</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005406:b2evolution &#12398; blogs/blog1.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005406_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005406_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005406_AD_1.html</id>
    <published>2012-11-20T14:55:23+09:00</published>
    <updated>2012-11-20T14:55:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
b2evolution の blogs/blog1.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005406_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:b2evolution:b2evolution"/>
    <sec:identifier>JVNDB-2012-005406</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005405:b2evolution &#12398; blogs/htsrv/viewfile.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005405_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005405_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005405_AD_1.html</id>
    <published>2012-11-20T14:53:51+09:00</published>
    <updated>2012-11-20T14:53:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
b2evolution の blogs/htsrv/viewfile.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005405_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:b2evolution:b2evolution"/>
    <sec:identifier>JVNDB-2012-005405</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005404:MyBB &#12398; admin/modules/user/users.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005404_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005404_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005404_AD_1.html</id>
    <published>2012-11-20T14:53:16+09:00</published>
    <updated>2012-11-20T14:53:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MyBB の admin/modules/user/users.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005404_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mybb:mybb"/>
    <sec:identifier>JVNDB-2012-005404</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005403:MyBB &#12398; admin/modules/user/users.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005403_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005403_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005403_AD_1.html</id>
    <published>2012-11-20T14:52:40+09:00</published>
    <updated>2012-11-20T14:52:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MyBB の admin/modules/user/users.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005403_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mybb:mybb"/>
    <sec:identifier>JVNDB-2012-005403</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005402:TomatoCart &#12398; json.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005402_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005402_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005402_AD_1.html</id>
    <published>2012-11-20T14:41:15+09:00</published>
    <updated>2012-11-20T14:41:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TomatoCart の json.php には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005402_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomatocart:tomatocart"/>
    <sec:identifier>JVNDB-2012-005402</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005401:GreenBrowser &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005401_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005401_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005401_AD_1.html</id>
    <published>2012-11-20T14:24:04+09:00</published>
    <updated>2012-11-20T14:24:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GreenBrowser には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005401_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:more_quick_tools:greenbrowser"/>
    <sec:identifier>JVNDB-2012-005401</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005400:KnFTPd &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005400_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005400_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005400_AD_1.html</id>
    <published>2012-11-20T14:08:50+09:00</published>
    <updated>2012-11-20T14:08:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KnFTPd には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005400_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:elif_keir:knftp"/>
    <sec:identifier>JVNDB-2012-005400</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005399:IrfanView &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005399_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005399_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005399_AD_1.html</id>
    <published>2012-11-20T13:56:47+09:00</published>
    <updated>2012-11-20T13:56:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IrfanView には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005399_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:irfanview"/>
    <sec:identifier>JVNDB-2012-005399</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005398:Simple Machines Forum &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005398_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005398_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005398_AD_1.html</id>
    <published>2012-11-20T13:54:07+09:00</published>
    <updated>2012-11-20T13:54:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Simple Machines Forum (SMF) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005398_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simplemachines:smf"/>
    <sec:identifier>JVNDB-2012-005398</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005397:DFLabs PTK &#12398; ptk/lib/modal_bookmark.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005397_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005397_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005397_AD_1.html</id>
    <published>2012-11-20T13:53:01+09:00</published>
    <updated>2012-11-20T13:53:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
DFLabs PTK の ptk/lib/modal_bookmark.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005397_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dflabs:ptk"/>
    <sec:identifier>JVNDB-2012-005397</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005396:DFLabs PTK &#12395;&#12362;&#12369;&#12427;&#12525;&#12464;&#12394;&#12393;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005396_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005396_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005396_AD_1.html</id>
    <published>2012-11-20T13:52:03+09:00</published>
    <updated>2012-11-20T13:52:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
DFLabs PTK は、アクセスコントロールが不十分である Web ドキュメントルート配下に予測可能な名前でデータファイルを保存するため、ログ、画像、またはレポートを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005396_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dflabs:ptk"/>
    <sec:identifier>JVNDB-2012-005396</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005395:SAMEDIA LandShop &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005395_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005395_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005395_AD_1.html</id>
    <published>2012-11-20T13:49:21+09:00</published>
    <updated>2012-11-20T13:49:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SAMEDIA LandShop には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005395_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop"/>
    <sec:identifier>JVNDB-2012-005395</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005394:SAMEDIA LandShop &#12398; admin/action/objects.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005394_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005394_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005394_AD_1.html</id>
    <published>2012-11-20T13:48:44+09:00</published>
    <updated>2012-11-20T13:48:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SAMEDIA LandShop の admin/action/objects.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005394_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop"/>
    <sec:identifier>JVNDB-2012-005394</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005393:SAMEDIA LandShop &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005393_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005393_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005393_AD_1.html</id>
    <published>2012-11-20T13:47:14+09:00</published>
    <updated>2012-11-20T13:47:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SAMEDIA LandShop には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005393_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop"/>
    <sec:identifier>JVNDB-2012-005393</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005392:Quest InTrust &#12398; ARDoc ActiveX &#12467;&#12531;&#12488;&#12525;&#12540;&#12523; &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#26360;&#36796;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005392_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005392_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005392_AD_1.html</id>
    <published>2012-11-20T13:44:55+09:00</published>
    <updated>2012-11-20T13:44:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Quest InTrust の ARDoc ActiveX コントロール (ARDoc.dll) 内の (1) SimpleTree、および (2) ReportTree クラスは、適切に SaveToFile メソッドを実装していないため、任意のファイルを書込まれる、または上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005392_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:quest:intrust"/>
    <sec:identifier>JVNDB-2012-005392</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005391:Quest InTrust &#12398; AnnotateX.dll &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005391_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005391_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005391_AD_1.html</id>
    <published>2012-11-20T13:43:49+09:00</published>
    <updated>2012-11-20T13:43:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Quest InTrust の AnnotateX.dll 内の Annotation Objects Extension ActiveX コントロールは、適切に Add メソッドを実装していないため、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005391_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:quest:intrust"/>
    <sec:identifier>JVNDB-2012-005391</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005390:iRODS &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005390_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005390_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005390_AD_1.html</id>
    <published>2012-11-20T13:43:11+09:00</published>
    <updated>2012-11-20T13:43:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
iRODS には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005390_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irods:irods"/>
    <sec:identifier>JVNDB-2012-005390</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005389:Havalite CMS &#12398; hava_post.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005389_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005389_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005389_AD_1.html</id>
    <published>2012-11-20T13:42:21+09:00</published>
    <updated>2012-11-20T13:42:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Havalite CMS の hava_post.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005389_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms"/>
    <sec:identifier>JVNDB-2012-005389</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005388:Havalite CMS &#12398; hava_upload.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005388_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005388_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005388_AD_1.html</id>
    <published>2012-11-20T13:41:21+09:00</published>
    <updated>2012-11-20T13:41:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Havalite CMS の hava_upload.php には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005388_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms"/>
    <sec:identifier>JVNDB-2012-005388</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005387:Havalite CMS &#12395;&#12362;&#12369;&#12427;&#27083;&#25104;&#12487;&#12540;&#12479;&#12505;&#12540;&#12473;&#12434;&#12480;&#12454;&#12531;&#12525;&#12540;&#12489;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005387_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005387_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005387_AD_1.html</id>
    <published>2012-11-20T13:40:30+09:00</published>
    <updated>2012-11-20T13:40:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Havalite CMS は、Web ルート配下へ重要な情報を不十分なアクセス制御で保存するため、構成データベースをダウンロードされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005387_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms"/>
    <sec:identifier>JVNDB-2012-005387</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005386:DAlbum &#12398; photo/pass.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005386_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005386_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005386_AD_1.html</id>
    <published>2012-11-20T13:38:20+09:00</published>
    <updated>2012-11-20T13:38:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
DAlbum の photo/pass.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005386_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:alexei_shamov:dalbum"/>
    <sec:identifier>JVNDB-2012-005386</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005385:TYPO3 &#29992; Front End User Registration &#12456;&#12463;&#12473;&#12486;&#12531;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427;&#12518;&#12540;&#12470;&#21517;&#12362;&#12424;&#12403;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005385_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005385_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005385_AD_1.html</id>
    <published>2012-11-20T13:37:37+09:00</published>
    <updated>2012-11-20T13:37:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TYPO3 用 Front End User Registration (sr_feuser_register) エクステンションには、ユーザ名、およびパスワードを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005385_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register"/>
    <sec:identifier>JVNDB-2012-005385</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005384:TYPO3 &#29992; powermail &#12456;&#12463;&#12473;&#12486;&#12531;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005384_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005384_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005384_AD_1.html</id>
    <published>2012-11-20T13:36:55+09:00</published>
    <updated>2012-11-20T13:36:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TYPO3 用 powermail エクステンションには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005384_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:alex_kellner:powermail"/>
    <sec:identifier>JVNDB-2012-005384</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005383:TYPO3 &#29992; Basic SEO Features &#12456;&#12463;&#12473;&#12486;&#12531;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005383_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005383_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005383_AD_1.html</id>
    <published>2012-11-20T13:35:31+09:00</published>
    <updated>2012-11-20T13:35:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TYPO3 用 Basic SEO Features (seo_basics) エクステンションには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005383_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:benjamin_mack:seo_basics"/>
    <sec:identifier>JVNDB-2012-005383</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005382:WordPress &#29992; Uk Cookie &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005382_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005382_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005382_AD_1.html</id>
    <published>2012-11-20T12:09:17+09:00</published>
    <updated>2012-11-20T12:09:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Uk Cookie プラグインには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005382_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uk-cookie_project:uk-cookie"/>
    <sec:identifier>JVNDB-2012-005382</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005381:Novell File Reporter &#12398; NFRAgent.exe &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005381_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005381_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005381_AD_1.html</id>
    <published>2012-11-20T11:24:03+09:00</published>
    <updated>2012-11-20T11:24:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell File Reporter の NFRAgent.exe には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005381_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter"/>
    <sec:identifier>JVNDB-2012-005381</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005380:Novell File Reporter &#12398; NFRAgent.exe &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005380_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005380_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005380_AD_1.html</id>
    <published>2012-11-20T11:23:05+09:00</published>
    <updated>2012-11-20T11:23:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell File Reporter の NFRAgent.exe には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005380_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter"/>
    <sec:identifier>JVNDB-2012-005380</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005379:Novell File Reporter &#12398; NFRAgent.exe &#12395;&#12362;&#12369;&#12427;&#32118;&#23550;&#12497;&#12473;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005379_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005379_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005379_AD_1.html</id>
    <published>2012-11-20T11:22:23+09:00</published>
    <updated>2012-11-20T11:22:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell File Reporter の NFRAgent.exe には、絶対パストラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005379_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter"/>
    <sec:identifier>JVNDB-2012-005379</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005378:Novell File Reporter &#12398; NFRAgent.exe &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005378_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005378_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005378_AD_1.html</id>
    <published>2012-11-20T11:21:36+09:00</published>
    <updated>2012-11-20T11:21:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell File Reporter の NFRAgent.exe には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005378_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter"/>
    <sec:identifier>JVNDB-2012-005378</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005377:Apache Tomcat &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005377_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005377_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005377_AD_1.html</id>
    <published>2012-11-20T11:18:57+09:00</published>
    <updated>2012-11-20T11:18:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat の HTTP Digest Access Authentication の実装は、適切な認証情報の確認の際に、失効した nonce 値を適切に確認しないため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005377_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005377</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005376:Apache Tomcat &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005376_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005376_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005376_AD_1.html</id>
    <published>2012-11-20T11:13:50+09:00</published>
    <updated>2012-11-20T11:13:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Tomcat の HTTP Digest Access Authentication の実装には、セッション状態において、認証されたユーザに関する情報をキャッシュするため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005376_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat"/>
    <sec:identifier>JVNDB-2012-005376</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4533:viewvc: Cross-site scripting (XSS) vulnerability in the "ex...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4533_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4533_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4533_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the &quot;extra&quot; details in the diff function in lib/viewvc.py in ViewVC 1.0.x before 1.0.13 and 1.1..x before 1.1.16 allows remote authenticated users with repository commit access to inject arbitrary web script or HTML via the &quot;function name&quot; line.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4533_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:viewvc:viewvc:1.0.0"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.1"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.10"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.11"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.12 and previous versions"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.2"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.3"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.4"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.5"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.6"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.7"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.8"/>
    <category term="cpe:/a:viewvc:viewvc:1.0.9"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.0"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.1"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.10"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.11"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.12"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.13"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.14"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.15 and previous versions"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.2"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.3"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.4"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.5"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.6"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.7"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.8"/>
    <category term="cpe:/a:viewvc:viewvc:1.1.9"/>
    <sec:identifier>CVE-2012-4533</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5703:esx, esxi: The vSphere API in VMware ESXi 4.1 and ESX 4.1 allo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5703_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5703_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5703_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The vSphere API in VMware ESXi 4.1 and ESX 4.1 allows remote attackers to cause a denial of service (host daemon crash) via an invalid value in a (1) RetrieveProp or (2) RetrievePropEx SOAP request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5703_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:vmware:esx:4.1"/>
    <category term="cpe:/o:vmware:esxi:4.1"/>
    <sec:identifier>CVE-2012-5703</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5674:coldfusion: Unspecified vulnerability in Adobe ColdFusion 10 be...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5674_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5674_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5674_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Adobe ColdFusion 10 before Update 5, when Internet Information Services (IIS) is used, allows attackers to cause a denial of service via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5674_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:coldfusion:10.0"/>
    <category term="cpe:/a:adobe:coldfusion:10.0:update_1"/>
    <category term="cpe:/a:adobe:coldfusion:10.0:update_3"/>
    <category term="cpe:/a:adobe:coldfusion:10.0:update_4"/>
    <sec:identifier>CVE-2012-5674</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5920:web_toolkit: Cross-site scripting (XSS) vulnerability in Google ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5920_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5920_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5920_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 through 2.5 Final allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  NOTE: this issue exists because of an incomplete fix for CVE-2012-4563.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5920_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:web_toolkit:2.4.0"/>
    <category term="cpe:/a:google:web_toolkit:2.4:beta"/>
    <category term="cpe:/a:google:web_toolkit:2.5.0"/>
    <category term="cpe:/a:google:web_toolkit:2.5.0:rc1"/>
    <category term="cpe:/a:google:web_toolkit:2.5.0:rc2"/>
    <sec:identifier>CVE-2012-5920</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5529:firebird: TraceManager in Firebird 2.5.0 and 2.5.1, when trac...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5529_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5529_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5529_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) by preparing an empty dynamic SQL query.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5529_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:firebirdsql:firebird:2.5.0"/>
    <category term="cpe:/a:firebirdsql:firebird:2.5.1"/>
    <sec:identifier>CVE-2012-5529</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5519:cups: CUPS 1.4.4, when running in certain Linux distribut...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5519_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5519_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5519_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5519_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:cups:1.4.4"/>
    <category term="cpe:/o:debian:debian_linux"/>
    <sec:identifier>CVE-2012-5519</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4566:radsecproxy: The DTLS support in radsecproxy before 1.6.2 does n...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4566_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4566_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4566_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The DTLS support in radsecproxy before 1.6.2 does not properly verify certificates when there are configuration blocks with CA settings that are unrelated to the block being used for verifying the certificate chain, which might allow remote attackers to bypass intended access restrictions and spoof clients, a different vulnerability than CVE-2012-4523.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4566_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uninett:radsecproxy:1.0"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:alpha-p1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:p1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1:beta"/>
    <category term="cpe:/a:uninett:radsecproxy:1.2"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3:beta"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.2"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.3"/>
    <category term="cpe:/a:uninett:radsecproxy:1.5"/>
    <category term="cpe:/a:uninett:radsecproxy:1.6"/>
    <category term="cpe:/a:uninett:radsecproxy:1.6.1 and previous versions"/>
    <sec:identifier>CVE-2012-4566</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4563:web_toolkit: Cross-site scripting (XSS) vulnerability in Google ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4563_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4563_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4563_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 Beta and release candidates before 2.4.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4563_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:web_toolkit:2.4:beta"/>
    <sec:identifier>CVE-2012-4563</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4523:radsecproxy: radsecproxy before 1.6.1 does not properly verify c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4523_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4523_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4523_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
radsecproxy before 1.6.1 does not properly verify certificates when there are configuration blocks with CA settings that are unrelated to the block being used for verifying the certificate chain, which might allow remote attackers to bypass intended access restrictions and spoof clients.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4523_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uninett:radsecproxy:1.0"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:alpha-p1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.0:p1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.1:beta"/>
    <category term="cpe:/a:uninett:radsecproxy:1.2"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3:alpha"/>
    <category term="cpe:/a:uninett:radsecproxy:1.3:beta"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.1"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.2"/>
    <category term="cpe:/a:uninett:radsecproxy:1.4.3"/>
    <category term="cpe:/a:uninett:radsecproxy:1.5"/>
    <category term="cpe:/a:uninett:radsecproxy:1.6 and previous versions"/>
    <sec:identifier>CVE-2012-4523</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4510:cups-pk-helper: cups-pk-helper before 0.2.3 does not properly wrap ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4510_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4510_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4510_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows user-assisted remote attackers to read or overwrite sensitive files using CUPS resources.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4510_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.0.1"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.0.2"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.0.3"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.0.4"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.1.0"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.1.1"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.1.2"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.1.3"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.2.0"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.2.1"/>
    <category term="cpe:/a:cups-pk-helper_project:cups-pk-helper:0.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4510</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4366:n150_wireless_router, n300_wireless_router, n450_wireless_router, n900_wireless_r...: Belkin wireless routers Surf N150 Model F7D1301v1, ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4366_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4366_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4366_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on the MAC address, which allows remote attackers to access the network by sniffing the beacon frames.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4366_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:belkin:n150_wireless_router:f7d1301v1"/>
    <category term="cpe:/h:belkin:n300_wireless_router:f7d2301v1"/>
    <category term="cpe:/h:belkin:n450_wireless_router:f9k1105v2"/>
    <category term="cpe:/h:belkin:n900_wireless_router:f9k1104v1"/>
    <sec:identifier>CVE-2012-4366</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3354:dokuwiki, fedora: doku.php in DokuWiki, as used in Fedora 16, 17, and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3354_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3354_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3354_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers to obtain sensitive information via the prefix parameter, which reveals the installation path in an error message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3354_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:andreas_gohr:dokuwiki:-"/>
    <category term="cpe:/o:fedoraproject:fedora:16"/>
    <category term="cpe:/o:fedoraproject:fedora:17"/>
    <category term="cpe:/o:fedoraproject:fedora:18"/>
    <sec:identifier>CVE-2012-3354</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-4612:icecast: icecast before 2.3.3 allows remote attackers to inj...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4612_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4612_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4612_AD_1.html</id>
    <published>2012-11-20T00:00:00+09:00</published>
    <updated>2012-11-20T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
icecast before 2.3.3 allows remote attackers to inject control characters such as newlines into the error loc (error.log) via a crafted URL.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4612_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:icecast:icecast"/>
    <category term="cpe:/a:icecast:icecast:1.0.0"/>
    <category term="cpe:/a:icecast:icecast:1.3.0"/>
    <category term="cpe:/a:icecast:icecast:1.3.10"/>
    <category term="cpe:/a:icecast:icecast:1.3.10.1"/>
    <category term="cpe:/a:icecast:icecast:1.3.11"/>
    <category term="cpe:/a:icecast:icecast:1.3.12"/>
    <category term="cpe:/a:icecast:icecast:1.3.5"/>
    <category term="cpe:/a:icecast:icecast:1.3.5.1"/>
    <category term="cpe:/a:icecast:icecast:1.3.7"/>
    <category term="cpe:/a:icecast:icecast:1.3.7.1"/>
    <category term="cpe:/a:icecast:icecast:1.3.8"/>
    <category term="cpe:/a:icecast:icecast:1.3.8_beta2"/>
    <category term="cpe:/a:icecast:icecast:1.3.9"/>
    <category term="cpe:/a:icecast:icecast:1.3.9.1"/>
    <category term="cpe:/a:icecast:icecast:1.3.9.2"/>
    <category term="cpe:/a:icecast:icecast:1.310"/>
    <category term="cpe:/a:icecast:icecast:1.310::linux"/>
    <category term="cpe:/a:icecast:icecast:2.0"/>
    <category term="cpe:/a:icecast:icecast:2.0.0"/>
    <category term="cpe:/a:icecast:icecast:2.0.1"/>
    <category term="cpe:/a:icecast:icecast:2.0.2"/>
    <category term="cpe:/a:icecast:icecast:2.1.0"/>
    <category term="cpe:/a:icecast:icecast:2.2"/>
    <category term="cpe:/a:icecast:icecast:2.3.0"/>
    <category term="cpe:/a:icecast:icecast:2.3.1"/>
    <category term="cpe:/a:icecast:icecast:2.3.2 and previous versions"/>
    <sec:identifier>CVE-2011-4612</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005373:Bugzilla &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12398;&#20445;&#23384;&#28168;&#12415;&#26908;&#32034;&#12395;&#38306;&#12377;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005373_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005373_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005373_AD_1.html</id>
    <published>2012-11-19T15:12:35+09:00</published>
    <updated>2012-11-19T15:12:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla の Bugzilla/WebService/User.pm 内の User.get メソッドには、任意の保存済み検索 (saved search) に関する重要な情報を取得される脆弱性が存在します。  本脆弱性は、CVE-2012-4198 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005373_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <sec:identifier>JVNDB-2012-005373</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005372:Bugzilla &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; YUI &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005372_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005372_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005372_AD_1.html</id>
    <published>2012-11-19T15:08:39+09:00</published>
    <updated>2012-11-19T15:08:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla で使用される YUI の Flash インフラストラクチャコンポーネントには、swfstore.swf に関する処理に不備があるため、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2010-4209 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005372_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <category term="cpe:/a:yahoo:yui"/>
    <sec:identifier>JVNDB-2012-005372</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005371:YUI &#12398; Flash &#12452;&#12531;&#12501;&#12521;&#12473;&#12488;&#12521;&#12463;&#12481;&#12515;&#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005371_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005371_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005371_AD_1.html</id>
    <published>2012-11-19T15:08:03+09:00</published>
    <updated>2012-11-19T15:08:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
YUI の Flash インフラストラクチャコンポーネントには、uploader.swf に関する処理に不備があるため、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2010-4208 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005371_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yahoo:yui"/>
    <sec:identifier>JVNDB-2012-005371</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005194:YUI &#12398; Flash &#12452;&#12531;&#12501;&#12521;&#12473;&#12488;&#12521;&#12463;&#12481;&#12515;&#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005194_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005194_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005194_AD_1.html</id>
    <published>2012-11-19T15:06:26+09:00</published>
    <updated>2012-11-19T15:06:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
YUI の Flash インフラストラクチャコンポーネントには、charts.swf に関する処理に不備があるため、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2010-4207 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005194_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yahoo:yui"/>
    <sec:identifier>JVNDB-2011-005194</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005370:Bugzilla &#12398; template/en/default/bug/field-events.js.tmpl &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005370_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005370_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005370_AD_1.html</id>
    <published>2012-11-19T14:53:59+09:00</published>
    <updated>2012-11-19T14:53:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla の template/en/default/bug/field-events.js.tmpl は、カスタムフィールドの可視性の制御を含む特定の状況下で、プライベートな商品名または個人的なコンポーネント名を含む JavaScript ファンクションコールを生成するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005370_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <sec:identifier>JVNDB-2012-005370</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005369:Bugzilla &#12398; Bugzilla/WebService/User.pm &#12395;&#12362;&#12369;&#12427;&#12503;&#12521;&#12452;&#12505;&#12540;&#12488;&#12464;&#12523;&#12540;&#12503;&#21517;&#12434;&#35211;&#12388;&#12369;&#12425;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005369_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005369_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005369_AD_1.html</id>
    <published>2012-11-19T14:50:31+09:00</published>
    <updated>2012-11-19T14:50:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla の Bugzilla/WebService/User.pm 内の User.get メソッドは、グループが存在するかどうかに応じて、グループのリクエストに対して異なる結果を返すため、プライベートグループ名を見つけられる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005369_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <sec:identifier>JVNDB-2012-005369</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005368:Bugzilla &#12398; attachment.cgi &#12395;&#12362;&#12369;&#12427;&#28155;&#20184;&#12373;&#12428;&#12383;&#35443;&#32048;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005368_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005368_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005368_AD_1.html</id>
    <published>2012-11-19T14:38:25+09:00</published>
    <updated>2012-11-19T14:38:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla の attachment.cgi 内の Bugzilla/Attachment.pm には、プライベートバグの添付された詳細を読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005368_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <sec:identifier>JVNDB-2012-005368</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005367:Bugzilla &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005367_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005367_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005367_AD_1.html</id>
    <published>2012-11-19T14:18:07+09:00</published>
    <updated>2012-11-19T14:18:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bugzilla には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005367_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla"/>
    <sec:identifier>JVNDB-2012-005367</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005366:EmpireCMS &#12398; e/class/connect.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; PHP &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005366_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005366_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005366_AD_1.html</id>
    <published>2012-11-19T14:04:23+09:00</published>
    <updated>2012-11-19T14:04:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EmpireCMS の e/class/connect.php 内のテンプレートパーサーの ReplaceListVars 関数には、Eval インジェクションにより、任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005366_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phome:empirecms"/>
    <sec:identifier>JVNDB-2012-005366</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005365:MantisBT &#12398; core/email_api.php &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005365_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005365_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005365_AD_1.html</id>
    <published>2012-11-19T13:56:58+09:00</published>
    <updated>2012-11-19T13:56:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MantisBT の core/email_api.php は、閲覧が制限されたバグに対する電子メール通知の送信を適切に管理しないため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005365_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mantisbt:mantisbt"/>
    <sec:identifier>JVNDB-2012-005365</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005364:MantisBT &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005364_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005364_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005364_AD_1.html</id>
    <published>2012-11-19T13:39:34+09:00</published>
    <updated>2012-11-19T13:39:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MantisBT には、ユーザによるバグのステータス変更の有無を処理する間、予測可能なデフォルト値を用いるため、アクセス制限を回避される、およびステータスを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005364_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mantisbt:mantisbt"/>
    <sec:identifier>JVNDB-2012-005364</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005193:EMC RSA Data Protection Manager Appliance &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005193_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005193_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005193_AD_1.html</id>
    <published>2012-11-19T12:26:42+09:00</published>
    <updated>2012-11-19T12:26:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA Data Protection Manager Appliance は、ユーザアカウントによる認証試行回数を適切に制限しないため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005193_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance"/>
    <sec:identifier>JVNDB-2011-005193</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005192:EMC RSA Data Protection Manager Appliance &#12362;&#12424;&#12403; Software Server &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005192_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005192_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005192_AD_1.html</id>
    <published>2012-11-19T12:24:13+09:00</published>
    <updated>2012-11-19T12:24:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA Data Protection Manager Appliance および Software Server には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005192_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_data_protection_manager_software_server"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance"/>
    <sec:identifier>JVNDB-2011-005192</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5919:cms: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5919_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5919_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5919_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) find or (2) replace fields to havalite/findReplace.php; (3) username parameter to havalite/hava_login.php, (4) the Edit Article module, or (5) hava_post.php in the postAuthor module; (6) postId parameter to hava_post.php; (7) userId parameter to hava_user.php; or (8) linkId parameter to hava_link.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5919_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms:1.0.4 and previous versions"/>
    <sec:identifier>CVE-2012-5919</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5918:razorcms: razorCMS 1.2 allows remote authenticated users to a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5918_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5918_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5918_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5918_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms:1.2"/>
    <sec:identifier>CVE-2012-5918</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5854:weechat: Heap-based buffer overflow in WeeChat 0.3.6 through...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5854_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5854_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5854_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly execute arbitrary code via crafted IRC colors that are not properly decoded.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5854_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:flashtux:weechat:0.3.6"/>
    <category term="cpe:/a:flashtux:weechat:0.3.7"/>
    <category term="cpe:/a:flashtux:weechat:0.3.8"/>
    <category term="cpe:/a:flashtux:weechat:0.3.9"/>
    <sec:identifier>CVE-2012-5854</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4541:piwik: Cross-site scripting (XSS) vulnerability in Piwik b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4541_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4541_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4541_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Piwik before 1.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4541_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:piwik:piwik:1.0"/>
    <category term="cpe:/a:piwik:piwik:1.2"/>
    <category term="cpe:/a:piwik:piwik:1.2.1"/>
    <category term="cpe:/a:piwik:piwik:1.3"/>
    <category term="cpe:/a:piwik:piwik:1.4"/>
    <category term="cpe:/a:piwik:piwik:1.5"/>
    <category term="cpe:/a:piwik:piwik:1.5.1"/>
    <category term="cpe:/a:piwik:piwik:1.6"/>
    <category term="cpe:/a:piwik:piwik:1.7"/>
    <category term="cpe:/a:piwik:piwik:1.8"/>
    <category term="cpe:/a:piwik:piwik:1.8.1"/>
    <category term="cpe:/a:piwik:piwik:1.8.2"/>
    <category term="cpe:/a:piwik:piwik:1.8.3"/>
    <category term="cpe:/a:piwik:piwik:1.8.4 and previous versions"/>
    <sec:identifier>CVE-2012-4541</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4423:libvirt: The virNetServerProgramDispatchCall function in lib...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4423_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4423_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4423_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and segmentation fault) via an RPC call with (1) an event as the RPC number or (2) an RPC number whose value is in a &quot;gap&quot; in the RPC dispatch table.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4423_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:libvirt:0.0.1"/>
    <category term="cpe:/a:redhat:libvirt:0.0.2"/>
    <category term="cpe:/a:redhat:libvirt:0.0.3"/>
    <category term="cpe:/a:redhat:libvirt:0.0.4"/>
    <category term="cpe:/a:redhat:libvirt:0.0.5"/>
    <category term="cpe:/a:redhat:libvirt:0.0.6"/>
    <category term="cpe:/a:redhat:libvirt:0.1.0"/>
    <category term="cpe:/a:redhat:libvirt:0.1.1"/>
    <category term="cpe:/a:redhat:libvirt:0.1.3"/>
    <category term="cpe:/a:redhat:libvirt:0.1.4"/>
    <category term="cpe:/a:redhat:libvirt:0.1.5"/>
    <category term="cpe:/a:redhat:libvirt:0.1.6"/>
    <category term="cpe:/a:redhat:libvirt:0.1.7"/>
    <category term="cpe:/a:redhat:libvirt:0.1.8"/>
    <category term="cpe:/a:redhat:libvirt:0.1.9"/>
    <category term="cpe:/a:redhat:libvirt:0.10.0"/>
    <category term="cpe:/a:redhat:libvirt:0.10.1 and previous versions"/>
    <category term="cpe:/a:redhat:libvirt:0.2.0"/>
    <category term="cpe:/a:redhat:libvirt:0.2.1"/>
    <category term="cpe:/a:redhat:libvirt:0.2.2"/>
    <category term="cpe:/a:redhat:libvirt:0.2.3"/>
    <category term="cpe:/a:redhat:libvirt:0.3.0"/>
    <category term="cpe:/a:redhat:libvirt:0.3.1"/>
    <category term="cpe:/a:redhat:libvirt:0.3.2"/>
    <category term="cpe:/a:redhat:libvirt:0.3.3"/>
    <category term="cpe:/a:redhat:libvirt:0.4.0"/>
    <category term="cpe:/a:redhat:libvirt:0.4.1"/>
    <category term="cpe:/a:redhat:libvirt:0.4.2"/>
    <category term="cpe:/a:redhat:libvirt:0.4.3"/>
    <category term="cpe:/a:redhat:libvirt:0.4.4"/>
    <category term="cpe:/a:redhat:libvirt:0.4.5"/>
    <category term="cpe:/a:redhat:libvirt:0.4.6"/>
    <category term="cpe:/a:redhat:libvirt:0.5.0"/>
    <category term="cpe:/a:redhat:libvirt:0.5.1"/>
    <category term="cpe:/a:redhat:libvirt:0.6.0"/>
    <category term="cpe:/a:redhat:libvirt:0.6.1"/>
    <category term="cpe:/a:redhat:libvirt:0.6.2"/>
    <category term="cpe:/a:redhat:libvirt:0.6.3"/>
    <category term="cpe:/a:redhat:libvirt:0.6.4"/>
    <category term="cpe:/a:redhat:libvirt:0.6.5"/>
    <category term="cpe:/a:redhat:libvirt:0.7.0"/>
    <category term="cpe:/a:redhat:libvirt:0.7.1"/>
    <category term="cpe:/a:redhat:libvirt:0.7.2"/>
    <category term="cpe:/a:redhat:libvirt:0.7.3"/>
    <category term="cpe:/a:redhat:libvirt:0.7.4"/>
    <category term="cpe:/a:redhat:libvirt:0.7.5"/>
    <category term="cpe:/a:redhat:libvirt:0.7.6"/>
    <category term="cpe:/a:redhat:libvirt:0.7.7"/>
    <category term="cpe:/a:redhat:libvirt:0.8.0"/>
    <category term="cpe:/a:redhat:libvirt:0.8.1"/>
    <category term="cpe:/a:redhat:libvirt:0.8.2"/>
    <category term="cpe:/a:redhat:libvirt:0.8.3"/>
    <category term="cpe:/a:redhat:libvirt:0.8.4"/>
    <category term="cpe:/a:redhat:libvirt:0.8.5"/>
    <category term="cpe:/a:redhat:libvirt:0.8.6"/>
    <category term="cpe:/a:redhat:libvirt:0.8.7"/>
    <category term="cpe:/a:redhat:libvirt:0.8.8"/>
    <category term="cpe:/a:redhat:libvirt:0.9.0"/>
    <category term="cpe:/a:redhat:libvirt:0.9.1"/>
    <category term="cpe:/a:redhat:libvirt:0.9.10"/>
    <category term="cpe:/a:redhat:libvirt:0.9.11"/>
    <category term="cpe:/a:redhat:libvirt:0.9.12"/>
    <category term="cpe:/a:redhat:libvirt:0.9.13"/>
    <category term="cpe:/a:redhat:libvirt:0.9.2"/>
    <category term="cpe:/a:redhat:libvirt:0.9.3"/>
    <category term="cpe:/a:redhat:libvirt:0.9.4"/>
    <category term="cpe:/a:redhat:libvirt:0.9.5"/>
    <category term="cpe:/a:redhat:libvirt:0.9.6"/>
    <category term="cpe:/a:redhat:libvirt:0.9.7"/>
    <category term="cpe:/a:redhat:libvirt:0.9.8"/>
    <category term="cpe:/a:redhat:libvirt:0.9.9"/>
    <sec:identifier>CVE-2012-4423</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4233:libreoffice, openoffice.org: LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4233_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4233_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4233_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4233_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libreoffice:libreoffice:3.5"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.0"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.0:rc1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.0:rc2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.0:rc3"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.1:rc1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.1:rc2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.2:rc1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.2:rc2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.3"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.3:rc1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.3:rc2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.4"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.4:rc2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.5"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.5.1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.5.2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.5.3"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.6"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.6.1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.6.2"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.6.3"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.5.:rc1"/>
    <category term="cpe:/a:libreoffice:libreoffice:3.6 and previous versions"/>
    <category term="cpe:/a:sun:openoffice.org:-"/>
    <sec:identifier>CVE-2012-4233</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4225:unix_graphic_driver: NVIDIA UNIX graphics driver before 295.71 and befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4225_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4225_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4225_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
NVIDIA UNIX graphics driver before 295.71 and before 304.32 allows local users to write to arbitrary physical memory locations and gain privileges by modifying the VGA window using /dev/nvidia0.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4225_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nvidia:unix_graphic_driver:295.71 and previous versions"/>
    <category term="cpe:/a:nvidia:unix_graphic_driver:304.32 and previous versions"/>
    <sec:identifier>CVE-2012-4225</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5244:evince, t1lib, tetex: Multiple off-by-one errors in the (1) token and (2)...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5244_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5244_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5244_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, different vulnerabilities than CVE-2010-2642 and CVE-2011-0433.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5244_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:evince:-"/>
    <category term="cpe:/a:t1lib:t1lib"/>
    <category term="cpe:/a:tetex:tetex:3.0"/>
    <sec:identifier>CVE-2011-5244</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-2486:nspluginwrapper: nspluginwrapper before 1.4.4 does not properly prov...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2486_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2486_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2486_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-2486_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nspluginwrapper:nspluginwrapper:1.4.2"/>
    <sec:identifier>CVE-2011-2486</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-0433:evince, t1lib, tetex: Heap-based buffer overflow in the linetoken functio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-0433_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-0433_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-0433_AD_1.html</id>
    <published>2012-11-19T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, a different vulnerability than CVE-2010-2642.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-0433_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:evince:-"/>
    <category term="cpe:/a:t1lib:t1lib"/>
    <category term="cpe:/a:tetex:tetex:3.0"/>
    <sec:identifier>CVE-2011-0433</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4552:plib: Stack-based buffer overflow in the error function i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4552_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4552_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4552_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the error function in ssg/ssgParser.cxx in PLIB 1.8.5 allows remote attackers to execute arbitrary code via a crafted 3d model file that triggers a long error message, as demonstrated by a .ase file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4552_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:steve_j_baker:plib:1.8.5"/>
    <sec:identifier>CVE-2012-4552</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4520:django: The django.http.HttpRequest.get_host function in Dj...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4520_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4520_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4520_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The django.http.HttpRequest.get_host function in Django 1.3.x before 1.3.4 and 1.4.x before 1.4.2 allows remote attackers to generate and display arbitrary URLs via crafted username and password Host header values.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4520_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:djangoproject:django:1.3"/>
    <category term="cpe:/a:djangoproject:django:1.3.1"/>
    <category term="cpe:/a:djangoproject:django:1.3.2"/>
    <category term="cpe:/a:djangoproject:django:1.3:alpha1"/>
    <category term="cpe:/a:djangoproject:django:1.3:beta1"/>
    <category term="cpe:/a:djangoproject:django:1.4"/>
    <category term="cpe:/a:djangoproject:django:1.4.1"/>
    <sec:identifier>CVE-2012-4520</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4433:gegl: Multiple integer overflows in operations/external/p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4433_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4433_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4433_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large (1) width or (2) height value in a Portable Pixel Map (ppm) image, which triggers a heap-based buffer overflow.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4433_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gegl:gegl:0.2.0"/>
    <sec:identifier>CVE-2012-4433</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4417:glusterfs: GlusterFS 3.3.0, as used in Red Hat Storage server ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4417_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4417_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4417_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
GlusterFS 3.3.0, as used in Red Hat Storage server 2.0, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4417_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gluster:glusterfs:3.3.0"/>
    <sec:identifier>CVE-2012-4417</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4950:pattern_insight: Cross-site scripting (XSS) vulnerability in the Key...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4950_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4950_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4950_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows remote attackers to inject arbitrary web script or HTML via crafted characters that are not properly handled during construction of error messages.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4950_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight:2.3"/>
    <sec:identifier>CVE-2012-4950</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4947:fleetcommander, fleetcommander_kiosk: Agile FleetCommander and FleetCommander Kiosk befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4947_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4947_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4947_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Agile FleetCommander and FleetCommander Kiosk before 4.08 store database credentials in cleartext, which allows remote attackers to obtain sensitive information via requests to unspecified pages.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4947_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4947</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4946:fleetcommander, fleetcommander_kiosk: Agile FleetCommander and FleetCommander Kiosk befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4946_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4946_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4946_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easier for context-dependent attackers to obtain sensitive information by reading a key file and the encrypted strings.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4946_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4946</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4945:fleetcommander, fleetcommander_kiosk: Agile FleetCommander and FleetCommander Kiosk befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4945_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4945_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4945_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary commands via unspecified vectors, related to a &quot;command injection&quot; issue.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4945_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4945</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4944:fleetcommander, fleetcommander_kiosk: Multiple unrestricted file upload vulnerabilities i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4944_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4944_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4944_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unrestricted file upload vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary code by uploading a file via an unspecified page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4944_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4944</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4943:fleetcommander, fleetcommander_kiosk: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4943_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4943_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4943_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to hijack the authentication of arbitrary users for requests that modify (1) passwords, (2) accounts, or (3) permissions.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4943_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4943</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4942:fleetcommander, fleetcommander_kiosk: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4942_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4942_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4942_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to inject arbitrary web script or HTML via an arbitrary text field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4942_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4942</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4941:fleetcommander, fleetcommander_kiosk: Multiple SQL injection vulnerabilities in Agile Fle...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4941_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4941_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4941_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4941_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:agilefleet:fleetcommander:4.0 and previous versions"/>
    <category term="cpe:/a:agilefleet:fleetcommander_kiosk:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-4941</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4938:pattern_insight: Cross-site scripting (XSS) vulnerability in the web...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4938_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4938_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4938_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated administrators to inject arbitrary web script or HTML via the banner message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4938_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight:2.3"/>
    <sec:identifier>CVE-2012-4938</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4937:pattern_insight: Session fixation vulnerability in the web interface...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4937_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4937_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4937_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web sessions via a jsession_id cookie.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4937_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight:2.3"/>
    <sec:identifier>CVE-2012-4937</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4936:pattern_insight: The web interface in Pattern Insight 2.3 allows rem...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4936_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4936_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4936_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The web interface in Pattern Insight 2.3 allows remote attackers to conduct clickjacking attacks via a FRAME element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4936_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight:2.3"/>
    <sec:identifier>CVE-2012-4936</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4935:pattern_insight: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4935_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4935_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4935_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack the authentication of arbitrary users.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4935_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:patterninsight:pattern_insight:2.3"/>
    <sec:identifier>CVE-2012-4935</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4959:file_reporter: Directory traversal vulnerability in NFRAgent.exe i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4959_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4959_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4959_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to upload and execute files via a 130 /FSF/CMD request with a .. (dot dot) in a FILE element of an FSFUI record.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4959_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter:1.0.2"/>
    <sec:identifier>CVE-2012-4959</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4958:file_reporter: Directory traversal vulnerability in NFRAgent.exe i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4958_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4958_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4958_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a 126 /FSF/CMD request with a .. (dot dot) in a FILE element of an FSFUI record.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4958_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter:1.0.2"/>
    <sec:identifier>CVE-2012-4958</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4957:file_reporter: Absolute path traversal vulnerability in NFRAgent.e...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4957_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4957_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4957_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrary files via a /FSF/CMD request with a full pathname in a PATH element of an SRS record.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4957_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter:1.0.2"/>
    <sec:identifier>CVE-2012-4957</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4956:file_reporter: Heap-based buffer overflow in NFRAgent.exe in Novel...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4956_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4956_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4956_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL elements in an SRS record.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4956_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:file_reporter:1.0.2"/>
    <sec:identifier>CVE-2012-4956</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4575:pgbouncer: The add_database function in objects.c in the pgbou...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4575_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4575_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4575_AD_1.html</id>
    <published>2012-11-18T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The add_database function in objects.c in the pgbouncer pooler 1.5.2 for PostgreSQL allows remote attackers to cause a denial of service (daemon outage) via a long database name in a request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4575_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:marko_kreen:pgbouncer:1.5.2"/>
    <category term="cpe:/a:postgresql:postgresql"/>
    <sec:identifier>CVE-2012-4575</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5917:snackamp: SnackAmp 3.1.3 allows remote attackers to cause a d...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5917_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5917_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5917_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5917_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tom_wilkason:snackamp:3.1.3"/>
    <sec:identifier>CVE-2012-5917</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5916:seditio: Neocrome Seditio build 161 allows remote attackers ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5916_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5916_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5916_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Neocrome Seditio build 161 allows remote attackers to obtain sensitive information via a direct request to (1) docs/new/seditio-createnew-160.sql, (2) docs/upgrade/sedito_convert_to_utf8.optional.sql, or (3) system/install/install.parser.sql.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5916_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio:-"/>
    <sec:identifier>CVE-2012-5916</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5915:seditio: Neocrome Seditio build 161 and earlier allows remot...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5915_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5915_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5915_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Neocrome Seditio build 161 and earlier allows remote attackers to obtain sensitive information via direct request to (1) view.php, (2) plugins/contact/lang/contact.en.lang.php, (3) system/lang/en/main.lang.php, (4) system/lang/en/message.lang.php, or (5) system/core/view/view.inc.php, which reveals the installation path in an error message.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5915_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio:-"/>
    <sec:identifier>CVE-2012-5915</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5914:seditio: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5914_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5914_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5914_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the sed_import function in system/functions.php in Neocrome Seditio build 160 and 161 allow remote attackers to inject arbitrary web script or HTML via the (1) newmsg or (2) rtext parameter.  NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5914_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neocrome:seditio:-"/>
    <sec:identifier>CVE-2012-5914</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5913:wordpress_integrator: Cross-site scripting (XSS) vulnerability in wp-inte...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5913_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5913_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5913_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in wp-integrator.php in the WordPress Integrator module 1.32 for WordPress allows remote attackers to inject arbitrary web script or HTML via the redirect_to parameter to wp-login.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5913_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <category term="cpe:/a:wordpress_integrator_project:wordpress_integrator:1.32"/>
    <sec:identifier>CVE-2012-5913</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5912:picopublisher: Multiple SQL injection vulnerabilities in PicoPubli...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5912_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5912_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5912_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) page.php or (2) single.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5912_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:pico:picopublisher:2.0"/>
    <sec:identifier>CVE-2012-5912</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5911:b2evolution: Cross-site scripting (XSS) vulnerability in blogs/b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5911_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5911_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5911_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in blogs/blog1.php in b2evolution 4.1.3 allows remote attackers to inject arbitrary web script or HTML via the message body.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5911_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:b2evolution:b2evolution:4.1.3"/>
    <sec:identifier>CVE-2012-5911</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5910:b2evolution: SQL injection vulnerability in blogs/htsrv/viewfile...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5910_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5910_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5910_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in blogs/htsrv/viewfile.php in b2evolution 4.1.3 allows remote authenticated users to execute arbitrary SQL commands via the root parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5910_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:b2evolution:b2evolution:4.1.3"/>
    <sec:identifier>CVE-2012-5910</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5909:mybb: SQL injection vulnerability in admin/modules/user/u...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5909_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5909_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5909_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to execute arbitrary SQL commands via the conditions[usergroup][] parameter in a search action to admin/index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5909_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mybb:mybb:1.6.6"/>
    <sec:identifier>CVE-2012-5909</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5908:mybb: Cross-site scripting (XSS) vulnerability in admin/m...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5908_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5908_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5908_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to inject arbitrary web script or HTML via the conditions[usergroup][] parameter in a search action to admin/index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5908_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mybb:mybb:1.6.6"/>
    <sec:identifier>CVE-2012-5908</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5907:tomatocart: Directory traversal vulnerability in json.php in To...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5907_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5907_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5907_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in json.php in TomatoCart 1.2.0 Alpha 2 and possibly earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter in a &quot;3&quot; action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5907_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomatocart:tomatocart:1.2.0:alpha2"/>
    <sec:identifier>CVE-2012-5907</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5906:greenbrowser: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5906_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5906_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5906_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in GreenBrowser 6.1.0117 and 6.1.0216 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in an about: page or (2) the last visited URL in the LastVisitWriteEn function in function.js.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5906_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:morequick:greenbrowser:6.1.0117"/>
    <category term="cpe:/a:morequick:greenbrowser:6.1.0216"/>
    <sec:identifier>CVE-2012-5906</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5905:knftpd: Buffer overflow in KnFTPd 1.0.0 allows remote authe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5905_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5905_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5905_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in KnFTPd 1.0.0 allows remote authenticated users to cause a denial of service (crash) via a long string in a FEAT command.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5905_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:elif_keir:knftpd:1.0.0"/>
    <sec:identifier>CVE-2012-5905</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5904:irfanview: Heap-based buffer overflow in IrfanView before 4.33...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5904_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5904_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5904_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE compressed bitmap file such as a DIB, RLE, or BMP image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5904_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:irfanview:1.70"/>
    <category term="cpe:/a:irfanview:irfanview:1.80"/>
    <category term="cpe:/a:irfanview:irfanview:1.85"/>
    <category term="cpe:/a:irfanview:irfanview:1.90"/>
    <category term="cpe:/a:irfanview:irfanview:1.95"/>
    <category term="cpe:/a:irfanview:irfanview:1.97"/>
    <category term="cpe:/a:irfanview:irfanview:1.98"/>
    <category term="cpe:/a:irfanview:irfanview:1.98a"/>
    <category term="cpe:/a:irfanview:irfanview:1.99"/>
    <category term="cpe:/a:irfanview:irfanview:2.00"/>
    <category term="cpe:/a:irfanview:irfanview:2.05"/>
    <category term="cpe:/a:irfanview:irfanview:2.07"/>
    <category term="cpe:/a:irfanview:irfanview:2.10"/>
    <category term="cpe:/a:irfanview:irfanview:2.12"/>
    <category term="cpe:/a:irfanview:irfanview:2.15"/>
    <category term="cpe:/a:irfanview:irfanview:2.17"/>
    <category term="cpe:/a:irfanview:irfanview:2.18"/>
    <category term="cpe:/a:irfanview:irfanview:2.20"/>
    <category term="cpe:/a:irfanview:irfanview:2.22"/>
    <category term="cpe:/a:irfanview:irfanview:2.25"/>
    <category term="cpe:/a:irfanview:irfanview:2.27"/>
    <category term="cpe:/a:irfanview:irfanview:2.30"/>
    <category term="cpe:/a:irfanview:irfanview:2.32"/>
    <category term="cpe:/a:irfanview:irfanview:2.35"/>
    <category term="cpe:/a:irfanview:irfanview:2.37"/>
    <category term="cpe:/a:irfanview:irfanview:2.40"/>
    <category term="cpe:/a:irfanview:irfanview:2.50"/>
    <category term="cpe:/a:irfanview:irfanview:2.52"/>
    <category term="cpe:/a:irfanview:irfanview:2.55"/>
    <category term="cpe:/a:irfanview:irfanview:2.60"/>
    <category term="cpe:/a:irfanview:irfanview:2.63"/>
    <category term="cpe:/a:irfanview:irfanview:2.65"/>
    <category term="cpe:/a:irfanview:irfanview:2.66"/>
    <category term="cpe:/a:irfanview:irfanview:2.68"/>
    <category term="cpe:/a:irfanview:irfanview:2.80"/>
    <category term="cpe:/a:irfanview:irfanview:2.82"/>
    <category term="cpe:/a:irfanview:irfanview:2.83"/>
    <category term="cpe:/a:irfanview:irfanview:2.85"/>
    <category term="cpe:/a:irfanview:irfanview:2.90"/>
    <category term="cpe:/a:irfanview:irfanview:2.92"/>
    <category term="cpe:/a:irfanview:irfanview:2.95"/>
    <category term="cpe:/a:irfanview:irfanview:2.97"/>
    <category term="cpe:/a:irfanview:irfanview:2.98"/>
    <category term="cpe:/a:irfanview:irfanview:3.00"/>
    <category term="cpe:/a:irfanview:irfanview:3.02"/>
    <category term="cpe:/a:irfanview:irfanview:3.05"/>
    <category term="cpe:/a:irfanview:irfanview:3.07"/>
    <category term="cpe:/a:irfanview:irfanview:3.10"/>
    <category term="cpe:/a:irfanview:irfanview:3.12"/>
    <category term="cpe:/a:irfanview:irfanview:3.15"/>
    <category term="cpe:/a:irfanview:irfanview:3.17"/>
    <category term="cpe:/a:irfanview:irfanview:3.20"/>
    <category term="cpe:/a:irfanview:irfanview:3.21"/>
    <category term="cpe:/a:irfanview:irfanview:3.25"/>
    <category term="cpe:/a:irfanview:irfanview:3.30"/>
    <category term="cpe:/a:irfanview:irfanview:3.33"/>
    <category term="cpe:/a:irfanview:irfanview:3.35"/>
    <category term="cpe:/a:irfanview:irfanview:3.36"/>
    <category term="cpe:/a:irfanview:irfanview:3.50"/>
    <category term="cpe:/a:irfanview:irfanview:3.51"/>
    <category term="cpe:/a:irfanview:irfanview:3.60"/>
    <category term="cpe:/a:irfanview:irfanview:3.61"/>
    <category term="cpe:/a:irfanview:irfanview:3.70"/>
    <category term="cpe:/a:irfanview:irfanview:3.75"/>
    <category term="cpe:/a:irfanview:irfanview:3.80"/>
    <category term="cpe:/a:irfanview:irfanview:3.85"/>
    <category term="cpe:/a:irfanview:irfanview:3.90"/>
    <category term="cpe:/a:irfanview:irfanview:3.91"/>
    <category term="cpe:/a:irfanview:irfanview:3.92"/>
    <category term="cpe:/a:irfanview:irfanview:3.95"/>
    <category term="cpe:/a:irfanview:irfanview:3.97"/>
    <category term="cpe:/a:irfanview:irfanview:3.98"/>
    <category term="cpe:/a:irfanview:irfanview:3.99"/>
    <category term="cpe:/a:irfanview:irfanview:4.00"/>
    <category term="cpe:/a:irfanview:irfanview:4.10"/>
    <category term="cpe:/a:irfanview:irfanview:4.20"/>
    <category term="cpe:/a:irfanview:irfanview:4.23"/>
    <category term="cpe:/a:irfanview:irfanview:4.25"/>
    <category term="cpe:/a:irfanview:irfanview:4.27"/>
    <category term="cpe:/a:irfanview:irfanview:4.28"/>
    <category term="cpe:/a:irfanview:irfanview:4.30"/>
    <category term="cpe:/a:irfanview:irfanview:4.32 and previous versions"/>
    <sec:identifier>CVE-2012-5904</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5903:smf: Cross-site scripting (XSS) vulnerability in Simple ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5903_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5903_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5903_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the scheduled parameter to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5903_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simple_machines:smf:2.0.2"/>
    <sec:identifier>CVE-2012-5903</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5902:ptk: Cross-site scripting (XSS) vulnerability in ptk/lib...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5902_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5902_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5902_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to inject arbitrary web script or HTML via the arg4 parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5902_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dflabs:ptk:1.0.5"/>
    <sec:identifier>CVE-2012-5902</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5901:ptk: DFLabs PTK 1.0.5 stores data files with predictable...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5901_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5901_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5901_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read logs, images, or reports via a direct request to the file in the (1) log, (2) images, or (3) report directory.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5901_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dflabs:ptk:1.0.5"/>
    <sec:identifier>CVE-2012-5901</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5900:landshop: Multiple SQL injection vulnerabilities in SAMEDIA L...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5900_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5900_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5900_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) OB_ID parameter in a single action to admin/action/objects.php, (2) AREA_ID parameter in a single action to admin/action/areas.php, or (3) start parameter in a show action to admin/action/pdf.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5900_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop:0.9.2"/>
    <sec:identifier>CVE-2012-5900</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5899:landshop: Cross-site scripting (XSS) vulnerability in admin/a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5899_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5899_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5899_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in admin/action/objects.php in SAMEDIA LandShop 0.9.2 allows remote attackers to inject arbitrary web script or HTML via the OTR_HEADS[] parameter in an edit action. NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5899_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop:0.9.2"/>
    <sec:identifier>CVE-2012-5899</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5898:landshop: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5898_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5898_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5898_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in SAMEDIA LandShop 0.9.2 allows remote attackers to hijack the authentication of administrators for requests that change account settings.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5898_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:samedia:landshop:0.9.2"/>
    <sec:identifier>CVE-2012-5898</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5897:intrust: The (1) SimpleTree and (2) ReportTree classees in t...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5897_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5897_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5897_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) SimpleTree and (2) ReportTree classees in the ARDoc ActiveX control (ARDoc.dll) in Quest InTrust 10.4.0.853 and earlier do not properly implement the SaveToFile method, which allows remote attackers to write or overwrite arbitrary files via the bstrFileName argument.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5897_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:quest:intrust:10.1"/>
    <category term="cpe:/a:quest:intrust:10.2.5"/>
    <category term="cpe:/a:quest:intrust:10.3"/>
    <category term="cpe:/a:quest:intrust:10.4"/>
    <category term="cpe:/a:quest:intrust:10.4.0.853 and previous versions"/>
    <sec:identifier>CVE-2012-5897</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5896:intrust: The Annotation Objects Extension ActiveX control in...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5896_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5896_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5896_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an &quot;uninitialized pointer.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5896_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:quest:intrust:10.1"/>
    <category term="cpe:/a:quest:intrust:10.2.5"/>
    <category term="cpe:/a:quest:intrust:10.3"/>
    <category term="cpe:/a:quest:intrust:10.4"/>
    <category term="cpe:/a:quest:intrust:10.4.0.853 and previous versions"/>
    <sec:identifier>CVE-2012-5896</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5895:irods: Multiple unspecified vulnerabilities in iRODS befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5895_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5895_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5895_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unspecified vulnerabilities in iRODS before 3.1 have unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5895_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irods:irods:2.5"/>
    <category term="cpe:/a:irods:irods:3.0 and previous versions"/>
    <sec:identifier>CVE-2012-5895</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5894:cms: SQL injection vulnerability in hava_post.php in Hav...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5894_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5894_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5894_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in hava_post.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the postId parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5894_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms:1.1.0 and previous versions"/>
    <sec:identifier>CVE-2012-5894</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5893:cms: Unrestricted file upload vulnerability in hava_uplo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5893_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5893_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5893_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unrestricted file upload vulnerability in hava_upload.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading a file with a .php;.gif extension, then accessing it via a direct request to the file in tmp/files/.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5893_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms:1.1.0 and previous versions"/>
    <sec:identifier>CVE-2012-5893</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5892:cms: Havalite CMS 1.1.0 and earlier stores sensitive inf...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5892_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5892_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5892_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Havalite CMS 1.1.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the configuration database via a direct request for data/havalite.db3.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5892_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:havalite:cms:1.1.0 and previous versions"/>
    <sec:identifier>CVE-2012-5892</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5891:dalbum: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5891_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5891_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5891_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities in photo/pass.php in DAlbum 1.44 build 174 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add a user via an add action, (2) change user passwords via a change action, or (3) delete a user via a delete action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5891_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:alexei_shamov:dalbum:1.03"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.04"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.05"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.06"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.07"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.08"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.09"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.10"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.20"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.21"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp2"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp3"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp4"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp5"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp6"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.22:sp7"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.3"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.31"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.32"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.33"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.34"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.35"/>
    <category term="cpe:/a:alexei_shamov:dalbum:1.44:174 and previous versions"/>
    <sec:identifier>CVE-2012-5891</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5890:sr_feuser_register: The Front End User Registration (sr_feuser_register...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5890_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5890_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5890_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Front End User Registration (sr_feuser_register) extension before 2.6.2 for TYPO3 allows remote attackers to obtain user names and passwords via the (1) edit perspective or (2) autologin feature.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5890_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:1.4.7"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:1.6.5"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:1.6.6"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:1.6.7"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:1.6.8"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.0.0"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.1.0"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.2.0"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.2.1"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.2.3"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.2.4"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.2.5"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.3.0"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.3.3"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.3.4"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.3.5"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.3.6"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.4"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.1"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.11"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.12"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.13"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.14"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.15"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.16"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.17:18"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.19"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.2"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.3"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.4"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.5"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.5.6"/>
    <category term="cpe:/a:stanislas_rolland:sr_feuser_register:2.6.1 and previous versions"/>
    <category term="cpe:/a:typo3:typo3:-"/>
    <sec:identifier>CVE-2012-5890</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5889:powermail: Cross-site scripting (XSS) vulnerability in the pow...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5889_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5889_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5889_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the powermail extension before 1.6.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5889_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:alex_kellner:powermail:1.0.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.10"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.11"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.12"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.2"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.4"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.5"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.6"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.7"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.8"/>
    <category term="cpe:/a:alex_kellner:powermail:1.0.9"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.0"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.10"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.2"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.4"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.5"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.6"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.7"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.8"/>
    <category term="cpe:/a:alex_kellner:powermail:1.1.9"/>
    <category term="cpe:/a:alex_kellner:powermail:1.2.0"/>
    <category term="cpe:/a:alex_kellner:powermail:1.2.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.2.2"/>
    <category term="cpe:/a:alex_kellner:powermail:1.2.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.2.4"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.10"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.11"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.12"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.13"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.14"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.15"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.16"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.2"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.4"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.5"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.6"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.7"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.8"/>
    <category term="cpe:/a:alex_kellner:powermail:1.3.9"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.10"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.11"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.12"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.13"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.14"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.15"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.16"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.17"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.18"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.2"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.4"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.5"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.6"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.7"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.8"/>
    <category term="cpe:/a:alex_kellner:powermail:1.4.9"/>
    <category term="cpe:/a:alex_kellner:powermail:1.5.0"/>
    <category term="cpe:/a:alex_kellner:powermail:1.5.1"/>
    <category term="cpe:/a:alex_kellner:powermail:1.5.3"/>
    <category term="cpe:/a:alex_kellner:powermail:1.6.4 and previous versions"/>
    <category term="cpe:/a:typo3:typo3:-"/>
    <sec:identifier>CVE-2012-5889</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5888:seo_basics: Cross-site scripting (XSS) vulnerability in Basic S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5888_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5888_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5888_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Basic SEO Features (seo_basics) extension before 0.8.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5888_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:benjamin_mack:seo_basics:0.8.1 and previous versions"/>
    <category term="cpe:/a:typo3:typo3:-"/>
    <sec:identifier>CVE-2012-5888</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5887:tomcat: The HTTP Digest Access Authentication implementatio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5887_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5887_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5887_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 does not properly check for stale nonce values in conjunction with enforcement of proper credentials, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5887_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:5.5.0"/>
    <category term="cpe:/a:apache:tomcat:5.5.1"/>
    <category term="cpe:/a:apache:tomcat:5.5.10"/>
    <category term="cpe:/a:apache:tomcat:5.5.11"/>
    <category term="cpe:/a:apache:tomcat:5.5.12"/>
    <category term="cpe:/a:apache:tomcat:5.5.13"/>
    <category term="cpe:/a:apache:tomcat:5.5.14"/>
    <category term="cpe:/a:apache:tomcat:5.5.15"/>
    <category term="cpe:/a:apache:tomcat:5.5.16"/>
    <category term="cpe:/a:apache:tomcat:5.5.17"/>
    <category term="cpe:/a:apache:tomcat:5.5.18"/>
    <category term="cpe:/a:apache:tomcat:5.5.19"/>
    <category term="cpe:/a:apache:tomcat:5.5.2"/>
    <category term="cpe:/a:apache:tomcat:5.5.20"/>
    <category term="cpe:/a:apache:tomcat:5.5.21"/>
    <category term="cpe:/a:apache:tomcat:5.5.22"/>
    <category term="cpe:/a:apache:tomcat:5.5.23"/>
    <category term="cpe:/a:apache:tomcat:5.5.24"/>
    <category term="cpe:/a:apache:tomcat:5.5.25"/>
    <category term="cpe:/a:apache:tomcat:5.5.26"/>
    <category term="cpe:/a:apache:tomcat:5.5.27"/>
    <category term="cpe:/a:apache:tomcat:5.5.28"/>
    <category term="cpe:/a:apache:tomcat:5.5.29"/>
    <category term="cpe:/a:apache:tomcat:5.5.3"/>
    <category term="cpe:/a:apache:tomcat:5.5.30"/>
    <category term="cpe:/a:apache:tomcat:5.5.31"/>
    <category term="cpe:/a:apache:tomcat:5.5.32"/>
    <category term="cpe:/a:apache:tomcat:5.5.33"/>
    <category term="cpe:/a:apache:tomcat:5.5.34"/>
    <category term="cpe:/a:apache:tomcat:5.5.35"/>
    <category term="cpe:/a:apache:tomcat:5.5.4"/>
    <category term="cpe:/a:apache:tomcat:5.5.5"/>
    <category term="cpe:/a:apache:tomcat:5.5.6"/>
    <category term="cpe:/a:apache:tomcat:5.5.7"/>
    <category term="cpe:/a:apache:tomcat:5.5.8"/>
    <category term="cpe:/a:apache:tomcat:5.5.9"/>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-5887</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5886:tomcat: The HTTP Digest Access Authentication implementatio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5886_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5886_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5886_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 caches information about the authenticated user within the session state, which makes it easier for remote attackers to bypass authentication via vectors related to the session ID.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5886_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:5.5.0"/>
    <category term="cpe:/a:apache:tomcat:5.5.1"/>
    <category term="cpe:/a:apache:tomcat:5.5.10"/>
    <category term="cpe:/a:apache:tomcat:5.5.11"/>
    <category term="cpe:/a:apache:tomcat:5.5.12"/>
    <category term="cpe:/a:apache:tomcat:5.5.13"/>
    <category term="cpe:/a:apache:tomcat:5.5.14"/>
    <category term="cpe:/a:apache:tomcat:5.5.15"/>
    <category term="cpe:/a:apache:tomcat:5.5.16"/>
    <category term="cpe:/a:apache:tomcat:5.5.17"/>
    <category term="cpe:/a:apache:tomcat:5.5.18"/>
    <category term="cpe:/a:apache:tomcat:5.5.19"/>
    <category term="cpe:/a:apache:tomcat:5.5.2"/>
    <category term="cpe:/a:apache:tomcat:5.5.20"/>
    <category term="cpe:/a:apache:tomcat:5.5.21"/>
    <category term="cpe:/a:apache:tomcat:5.5.22"/>
    <category term="cpe:/a:apache:tomcat:5.5.23"/>
    <category term="cpe:/a:apache:tomcat:5.5.24"/>
    <category term="cpe:/a:apache:tomcat:5.5.25"/>
    <category term="cpe:/a:apache:tomcat:5.5.26"/>
    <category term="cpe:/a:apache:tomcat:5.5.27"/>
    <category term="cpe:/a:apache:tomcat:5.5.28"/>
    <category term="cpe:/a:apache:tomcat:5.5.29"/>
    <category term="cpe:/a:apache:tomcat:5.5.3"/>
    <category term="cpe:/a:apache:tomcat:5.5.30"/>
    <category term="cpe:/a:apache:tomcat:5.5.31"/>
    <category term="cpe:/a:apache:tomcat:5.5.32"/>
    <category term="cpe:/a:apache:tomcat:5.5.33"/>
    <category term="cpe:/a:apache:tomcat:5.5.34"/>
    <category term="cpe:/a:apache:tomcat:5.5.35"/>
    <category term="cpe:/a:apache:tomcat:5.5.4"/>
    <category term="cpe:/a:apache:tomcat:5.5.5"/>
    <category term="cpe:/a:apache:tomcat:5.5.6"/>
    <category term="cpe:/a:apache:tomcat:5.5.7"/>
    <category term="cpe:/a:apache:tomcat:5.5.8"/>
    <category term="cpe:/a:apache:tomcat:5.5.9"/>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-5886</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5885:tomcat: The replay-countermeasure functionality in the HTTP...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5885_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5885_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5885_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5885_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:5.5.0"/>
    <category term="cpe:/a:apache:tomcat:5.5.1"/>
    <category term="cpe:/a:apache:tomcat:5.5.10"/>
    <category term="cpe:/a:apache:tomcat:5.5.11"/>
    <category term="cpe:/a:apache:tomcat:5.5.12"/>
    <category term="cpe:/a:apache:tomcat:5.5.13"/>
    <category term="cpe:/a:apache:tomcat:5.5.14"/>
    <category term="cpe:/a:apache:tomcat:5.5.15"/>
    <category term="cpe:/a:apache:tomcat:5.5.16"/>
    <category term="cpe:/a:apache:tomcat:5.5.17"/>
    <category term="cpe:/a:apache:tomcat:5.5.18"/>
    <category term="cpe:/a:apache:tomcat:5.5.19"/>
    <category term="cpe:/a:apache:tomcat:5.5.2"/>
    <category term="cpe:/a:apache:tomcat:5.5.20"/>
    <category term="cpe:/a:apache:tomcat:5.5.21"/>
    <category term="cpe:/a:apache:tomcat:5.5.22"/>
    <category term="cpe:/a:apache:tomcat:5.5.23"/>
    <category term="cpe:/a:apache:tomcat:5.5.24"/>
    <category term="cpe:/a:apache:tomcat:5.5.25"/>
    <category term="cpe:/a:apache:tomcat:5.5.26"/>
    <category term="cpe:/a:apache:tomcat:5.5.27"/>
    <category term="cpe:/a:apache:tomcat:5.5.28"/>
    <category term="cpe:/a:apache:tomcat:5.5.29"/>
    <category term="cpe:/a:apache:tomcat:5.5.3"/>
    <category term="cpe:/a:apache:tomcat:5.5.30"/>
    <category term="cpe:/a:apache:tomcat:5.5.31"/>
    <category term="cpe:/a:apache:tomcat:5.5.32"/>
    <category term="cpe:/a:apache:tomcat:5.5.33"/>
    <category term="cpe:/a:apache:tomcat:5.5.34"/>
    <category term="cpe:/a:apache:tomcat:5.5.35"/>
    <category term="cpe:/a:apache:tomcat:5.5.4"/>
    <category term="cpe:/a:apache:tomcat:5.5.5"/>
    <category term="cpe:/a:apache:tomcat:5.5.6"/>
    <category term="cpe:/a:apache:tomcat:5.5.7"/>
    <category term="cpe:/a:apache:tomcat:5.5.8"/>
    <category term="cpe:/a:apache:tomcat:5.5.9"/>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.28"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-5885</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5856:uk-cookie: Cross-site scripting (XSS) vulnerability in the Uk ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5856_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5856_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5856_AD_1.html</id>
    <published>2012-11-17T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Uk Cookie (aka uk-cookie) plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5856_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:uk-cookie_project:uk-cookie:-"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5856</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5172:monaca_debugger: The Asial Monaca Debugger application before 1.4.2 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5172_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5172_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5172_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Asial Monaca Debugger application before 1.4.2 for Android allows remote attackers to obtain sensitive (1) account or (2) session ID information in a system log file via a crafted application.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5172_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:asial:monaca_debugger:1.4.1 and previous versions"/>
    <sec:identifier>CVE-2012-5172</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2733:tomcat: java/org/apache/coyote/http11/InternalNioInputBuffe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2733_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2733_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2733_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
java/org/apache/coyote/http11/InternalNioInputBuffer.java in the HTTP NIO connector in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28 does not properly restrict the request-header size, which allows remote attackers to cause a denial of service (memory consumption) via a large amount of header data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2733_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:tomcat:6.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0"/>
    <category term="cpe:/a:apache:tomcat:6.0.0:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.1"/>
    <category term="cpe:/a:apache:tomcat:6.0.10"/>
    <category term="cpe:/a:apache:tomcat:6.0.11"/>
    <category term="cpe:/a:apache:tomcat:6.0.12"/>
    <category term="cpe:/a:apache:tomcat:6.0.13"/>
    <category term="cpe:/a:apache:tomcat:6.0.14"/>
    <category term="cpe:/a:apache:tomcat:6.0.15"/>
    <category term="cpe:/a:apache:tomcat:6.0.16"/>
    <category term="cpe:/a:apache:tomcat:6.0.17"/>
    <category term="cpe:/a:apache:tomcat:6.0.18"/>
    <category term="cpe:/a:apache:tomcat:6.0.19"/>
    <category term="cpe:/a:apache:tomcat:6.0.1:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2"/>
    <category term="cpe:/a:apache:tomcat:6.0.20"/>
    <category term="cpe:/a:apache:tomcat:6.0.24"/>
    <category term="cpe:/a:apache:tomcat:6.0.26"/>
    <category term="cpe:/a:apache:tomcat:6.0.27"/>
    <category term="cpe:/a:apache:tomcat:6.0.28"/>
    <category term="cpe:/a:apache:tomcat:6.0.29"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.3"/>
    <category term="cpe:/a:apache:tomcat:6.0.30"/>
    <category term="cpe:/a:apache:tomcat:6.0.31"/>
    <category term="cpe:/a:apache:tomcat:6.0.32"/>
    <category term="cpe:/a:apache:tomcat:6.0.33"/>
    <category term="cpe:/a:apache:tomcat:6.0.35"/>
    <category term="cpe:/a:apache:tomcat:6.0.4"/>
    <category term="cpe:/a:apache:tomcat:6.0.4:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.5"/>
    <category term="cpe:/a:apache:tomcat:6.0.6"/>
    <category term="cpe:/a:apache:tomcat:6.0.6:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.7:beta"/>
    <category term="cpe:/a:apache:tomcat:6.0.8"/>
    <category term="cpe:/a:apache:tomcat:6.0.8:alpha"/>
    <category term="cpe:/a:apache:tomcat:6.0.9"/>
    <category term="cpe:/a:apache:tomcat:6.0.9:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.0"/>
    <category term="cpe:/a:apache:tomcat:7.0.0:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.1"/>
    <category term="cpe:/a:apache:tomcat:7.0.10"/>
    <category term="cpe:/a:apache:tomcat:7.0.11"/>
    <category term="cpe:/a:apache:tomcat:7.0.12"/>
    <category term="cpe:/a:apache:tomcat:7.0.13"/>
    <category term="cpe:/a:apache:tomcat:7.0.14"/>
    <category term="cpe:/a:apache:tomcat:7.0.15"/>
    <category term="cpe:/a:apache:tomcat:7.0.16"/>
    <category term="cpe:/a:apache:tomcat:7.0.17"/>
    <category term="cpe:/a:apache:tomcat:7.0.18"/>
    <category term="cpe:/a:apache:tomcat:7.0.19"/>
    <category term="cpe:/a:apache:tomcat:7.0.2"/>
    <category term="cpe:/a:apache:tomcat:7.0.20"/>
    <category term="cpe:/a:apache:tomcat:7.0.21"/>
    <category term="cpe:/a:apache:tomcat:7.0.22"/>
    <category term="cpe:/a:apache:tomcat:7.0.23"/>
    <category term="cpe:/a:apache:tomcat:7.0.25"/>
    <category term="cpe:/a:apache:tomcat:7.0.2:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.3"/>
    <category term="cpe:/a:apache:tomcat:7.0.4"/>
    <category term="cpe:/a:apache:tomcat:7.0.4:beta"/>
    <category term="cpe:/a:apache:tomcat:7.0.5"/>
    <category term="cpe:/a:apache:tomcat:7.0.6"/>
    <category term="cpe:/a:apache:tomcat:7.0.7"/>
    <category term="cpe:/a:apache:tomcat:7.0.8"/>
    <category term="cpe:/a:apache:tomcat:7.0.9"/>
    <sec:identifier>CVE-2012-2733</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005363:Dell OpenManage Server Administrator &#12395;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005363_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005363_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005363_AD_1.html</id>
    <published>2012-11-16T15:58:34+09:00</published>
    <updated>2012-11-16T15:58:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Dell OpenManage Server Administrator には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005363_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dell:openmanage_server_administrator"/>
    <sec:identifier>JVNDB-2012-005363</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005362:WebKit &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464; (XSS) &#20445;&#35703;&#12513;&#12459;&#12491;&#12474;&#12512;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005362_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005362_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005362_AD_1.html</id>
    <published>2012-11-16T14:34:30+09:00</published>
    <updated>2012-11-16T14:34:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome および Apple Safari で使用される WebKit の WebCore 内の html/parser/XSSAuditor.cpp は、反射データの出力可能なコンテキスト全てに配慮しないため、クロスサイトスクリプティング (XSS) 保護メカニズムを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005362_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:safari"/>
    <category term="cpe:/a:apple:webkit"/>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005362</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000103:Android &#29256; Monaca&#12487;&#12496;&#12483;&#12460;&#12540;&#12395;&#12362;&#12369;&#12427;&#24773;&#22577;&#31649;&#29702;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000103_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000103_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000103_AD_1.html</id>
    <published>2012-11-16T12:02:42+09:00</published>
    <updated>2012-11-16T12:02:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
アシアル株式会社が提供する Android 版 Monacaデバッガーには、情報管理不備の脆弱性が存在します。  アシアル株式会社が提供する Android 版 Monacaデバッガーには、当該製品を利用するためのアカウント情報やセッション ID 等の情報を Android 端末のログに保存する問題が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 隈賀白井比 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000103_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:monaca_debugger_for_android"/>
    <sec:identifier>JVNDB-2012-000103</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5884:bugzilla: The User.get method in Bugzilla/WebService/User.pm ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5884_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5884_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5884_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The User.get method in Bugzilla/WebService/User.pm in Bugzilla 4.3.2 allows remote attackers to obtain sensitive information about the saved searches of arbitrary users via an XMLRPC request or a JSONRPC request, a different vulnerability than CVE-2012-4198.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5884_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <sec:identifier>CVE-2012-5884</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5883:bugzilla, yui: Cross-site scripting (XSS) vulnerability in the Fla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5883_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5883_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5883_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 through 2.9.0, as used in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1, allows remote attackers to inject arbitrary web script or HTML via vectors related to swfstore.swf, a similar issue to CVE-2010-4209.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5883_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:3.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.3"/>
    <category term="cpe:/a:yahoo:yui:2.8.0"/>
    <category term="cpe:/a:yahoo:yui:2.8.1"/>
    <category term="cpe:/a:yahoo:yui:2.8.1:pr1"/>
    <category term="cpe:/a:yahoo:yui:2.8.2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr4"/>
    <sec:identifier>CVE-2012-5883</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5882:yui: Cross-site scripting (XSS) vulnerability in the Fla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5882_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5882_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5882_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to uploader.swf, a similar issue to CVE-2010-4208.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5882_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yahoo:yui:2.4.0"/>
    <category term="cpe:/a:yahoo:yui:2.4.1"/>
    <category term="cpe:/a:yahoo:yui:2.5.0"/>
    <category term="cpe:/a:yahoo:yui:2.5.1"/>
    <category term="cpe:/a:yahoo:yui:2.5.2"/>
    <category term="cpe:/a:yahoo:yui:2.6.0"/>
    <category term="cpe:/a:yahoo:yui:2.7.0"/>
    <category term="cpe:/a:yahoo:yui:2.8.0"/>
    <category term="cpe:/a:yahoo:yui:2.8.1"/>
    <category term="cpe:/a:yahoo:yui:2.8.1:pr1"/>
    <category term="cpe:/a:yahoo:yui:2.8.2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr4"/>
    <sec:identifier>CVE-2012-5882</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5881:yui: Cross-site scripting (XSS) vulnerability in the Fla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5881_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5881_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5881_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.4.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to charts.swf, a similar issue to CVE-2010-4207.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5881_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:yahoo:yui:2.4.0"/>
    <category term="cpe:/a:yahoo:yui:2.4.1"/>
    <category term="cpe:/a:yahoo:yui:2.5.0"/>
    <category term="cpe:/a:yahoo:yui:2.5.1"/>
    <category term="cpe:/a:yahoo:yui:2.5.2"/>
    <category term="cpe:/a:yahoo:yui:2.6.0"/>
    <category term="cpe:/a:yahoo:yui:2.7.0"/>
    <category term="cpe:/a:yahoo:yui:2.8.0"/>
    <category term="cpe:/a:yahoo:yui:2.8.1"/>
    <category term="cpe:/a:yahoo:yui:2.8.1:pr1"/>
    <category term="cpe:/a:yahoo:yui:2.8.2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr2"/>
    <category term="cpe:/a:yahoo:yui:2.9.0:pr4"/>
    <sec:identifier>CVE-2012-5881</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4199:bugzilla: template/en/default/bug/field-events.js.tmpl in Bug...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4199_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4199_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4199_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4199_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:3.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.11"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.11"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.12"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.13"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.11 and previous versions"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.3"/>
    <sec:identifier>CVE-2012-4199</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4198:bugzilla: The User.get method in Bugzilla/WebService/User.pm ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4198_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4198_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4198_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The User.get method in Bugzilla/WebService/User.pm in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 has a different outcome for a groups request depending on whether a group exists, which allows remote authenticated users to discover private group names by observing whether a call throws an error.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4198_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:3.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.3"/>
    <sec:identifier>CVE-2012-4198</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4197:bugzilla: Bugzilla/Attachment.pm in attachment.cgi in Bugzill...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4197_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4197_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4197_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Bugzilla/Attachment.pm in attachment.cgi in Bugzilla 2.x and 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 allows remote attackers to read attachment descriptions from private bugs via an obsolete=1 insert action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4197_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:2.0"/>
    <category term="cpe:/a:mozilla:bugzilla:2.10"/>
    <category term="cpe:/a:mozilla:bugzilla:2.12"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.14.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.10"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.11"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.7"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.8"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16.9"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.16:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.17.7"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.6%2B"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.7"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.8"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18.9"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.18:rc3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.19"/>
    <category term="cpe:/a:mozilla:bugzilla:2.19.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.19.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.19.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20.7"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.20:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.21"/>
    <category term="cpe:/a:mozilla:bugzilla:2.21.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.21.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.21.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.5"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22.7"/>
    <category term="cpe:/a:mozilla:bugzilla:2.22:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.23"/>
    <category term="cpe:/a:mozilla:bugzilla:2.23.1"/>
    <category term="cpe:/a:mozilla:bugzilla:2.23.2"/>
    <category term="cpe:/a:mozilla:bugzilla:2.23.3"/>
    <category term="cpe:/a:mozilla:bugzilla:2.23.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.4"/>
    <category term="cpe:/a:mozilla:bugzilla:2.6"/>
    <category term="cpe:/a:mozilla:bugzilla:2.8"/>
    <category term="cpe:/a:mozilla:bugzilla:2.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.11"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.1.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.3.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.11"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.12"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.13"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.4:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.5.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.0"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.10"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.11 and previous versions"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.3"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.4"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.5"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.6"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.8"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6.9"/>
    <category term="cpe:/a:mozilla:bugzilla:3.6:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.1"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.2"/>
    <category term="cpe:/a:mozilla:bugzilla:3.7.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.4"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.5"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.6"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.7"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0.8"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.0:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.3"/>
    <sec:identifier>CVE-2012-4197</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4189:bugzilla: Cross-site scripting (XSS) vulnerability in Bugzill...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4189_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4189_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4189_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Bugzilla 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1, allows remote attackers to inject arbitrary web script or HTML via a field value that is not properly handled during construction of a tabular report, as demonstrated by the Version field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4189_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:bugzilla:4.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.1.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2.4"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.2:rc2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.1"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.2"/>
    <category term="cpe:/a:mozilla:bugzilla:4.3.3"/>
    <sec:identifier>CVE-2012-4189</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5777:empirecms: Eval injection vulnerability in the ReplaceListVars...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5777_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5777_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5777_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Eval injection vulnerability in the ReplaceListVars function in the template parser in e/class/connect.php in EmpireCMS 6.6 allows user-assisted remote attackers to execute arbitrary PHP code via a crafted template.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5777_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phome:empirecms:6.6"/>
    <sec:identifier>CVE-2012-5777</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5523:mantisbt: core/email_api.php in MantisBT before 1.2.12 does n...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5523_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5523_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5523_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a bug before losing permission to view that bug.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5523_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mantisbt:mantisbt:0.18.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.9"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.9"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.10"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.11 and previous versions"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.9"/>
    <sec:identifier>CVE-2012-5523</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5522:mantisbt: MantisBT before 1.2.12 does not use an expected def...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5522_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5522_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5522_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
MantisBT before 1.2.12 does not use an expected default value during decisions about whether a user may modify the status of a bug, which allows remote authenticated users to bypass intended access restrictions and make status changes by leveraging a blank value for a per-status setting.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5522_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mantisbt:mantisbt:0.18.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:0.19.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.0:rc5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.0.9"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:a4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.0:rc3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.1.9"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:a3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:rc1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.0:rc2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.1"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.10"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.11 and previous versions"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.2"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.3"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.4"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.5"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.6"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.7"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.8"/>
    <category term="cpe:/a:mantisbt:mantisbt:1.2.9"/>
    <sec:identifier>CVE-2012-5522</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4613:rsa_data_protection_manager_appliance: EMC RSA Data Protection Manager Appliance 2.7.x and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4613_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4613_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4613_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
EMC RSA Data Protection Manager Appliance 2.7.x and 3.x before 3.2.1 does not properly restrict the number of authentication attempts by a user account, which makes it easier for local users to bypass intended access restrictions via a brute-force attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4613_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:2.7.0"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.0"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.1"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.2"/>
    <sec:identifier>CVE-2012-4613</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4612:rsa_data_protection_manager_appliance, rsa_data_protection_manager_software_server: Cross-site scripting (XSS) vulnerability in EMC RSA...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4612_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4612_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4612_AD_1.html</id>
    <published>2012-11-16T00:00:00+09:00</published>
    <updated>2012-11-16T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in EMC RSA Data Protection Manager Appliance and Software Server 2.7.x and 3.x before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4612_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_data_protection_manager_software_server:2.7.0"/>
    <category term="cpe:/a:emc:rsa_data_protection_manager_software_server:3.0"/>
    <category term="cpe:/a:emc:rsa_data_protection_manager_software_server:3.1"/>
    <category term="cpe:/a:emc:rsa_data_protection_manager_software_server:3.2"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:2.7.0"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.0"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.1"/>
    <category term="cpe:/h:emc:rsa_data_protection_manager_appliance:3.2"/>
    <sec:identifier>CVE-2012-4612</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005361:Oberthur &#12398;&#12473;&#12510;&#12540;&#12488;&#12459;&#12540;&#12489;&#12395;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005361_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005361_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005361_AD_1.html</id>
    <published>2012-11-15T17:43:38+09:00</published>
    <updated>2012-11-15T17:43:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oberthur が提供する ID-One Cosmo 64 は、FIPS PUB 186-3 などで規定されている電子署名の基準 (Digital Signature Standard) を満たさない公開鍵を使用しています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005361_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:oberthur_technologies_id-one_cosmo_64"/>
    <sec:identifier>JVNDB-2012-005361</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005360:VMware Workstation &#12362;&#12424;&#12403; VMware Player &#12395;&#12362;&#12369;&#12427;&#12507;&#12473;&#12488; OS &#12398;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005360_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005360_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005360_AD_1.html</id>
    <published>2012-11-15T16:44:28+09:00</published>
    <updated>2012-11-15T16:44:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する VMware Workstation および VMware Player には、検索パスに関する処理に不備があるため、ホスト OS の権限を取得される脆弱性が存在します。  補足情報 : CWE による脆弱性タイプは、CWE-426: Untrusted Search Path (信頼性のない検索パス) と識別されています。 http://cwe.mitre.org/data/definitions/426.html&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005360_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:player"/>
    <category term="cpe:/a:vmware:workstation"/>
    <sec:identifier>JVNDB-2012-005360</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005359:VMware Workstation &#12362;&#12424;&#12403; VMware Player &#12395;&#12362;&#12369;&#12427;&#12507;&#12473;&#12488; OS &#12398;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005359_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005359_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005359_AD_1.html</id>
    <published>2012-11-15T16:43:56+09:00</published>
    <updated>2012-11-15T16:43:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する VMware Workstation および VMware Player は、不特定のプロセススレッドに脆弱なパーミッションを用いるため、ホスト OS の権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005359_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:player"/>
    <category term="cpe:/a:vmware:workstation"/>
    <sec:identifier>JVNDB-2012-005359</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005358:&#35079;&#25968;&#12398; VMware &#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; VMware OVF Tool &#12395;&#12362;&#12369;&#12427;&#12501;&#12457;&#12540;&#12510;&#12483;&#12488;&#12473;&#12488;&#12522;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005358_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005358_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005358_AD_1.html</id>
    <published>2012-11-15T16:43:20+09:00</published>
    <updated>2012-11-15T16:43:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の VMware 製品で使用される Windows 上で稼働する VMware OVF Tool には、フォーマットストリングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005358_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:ovf_tool"/>
    <category term="cpe:/a:vmware:player"/>
    <category term="cpe:/a:vmware:workstation"/>
    <sec:identifier>JVNDB-2012-005358</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005357:IBM WebSphere Application Server &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005357_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005357_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005357_AD_1.html</id>
    <published>2012-11-15T16:42:16+09:00</published>
    <updated>2012-11-15T16:42:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Application Server には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005357_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server"/>
    <sec:identifier>JVNDB-2012-005357</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005356:IBM WebSphere Application Server &#12398; Liberty Profile &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005356_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005356_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005356_AD_1.html</id>
    <published>2012-11-15T16:41:33+09:00</published>
    <updated>2012-11-15T16:41:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Application Server の Liberty Profile には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005356_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server"/>
    <sec:identifier>JVNDB-2012-005356</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005355:IBM WebSphere Application Server &#12398; Liberty Profile &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005355_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005355_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005355_AD_1.html</id>
    <published>2012-11-15T16:39:56+09:00</published>
    <updated>2012-11-15T16:39:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Application Server の Liberty Profile には、JAX-RS を使用している際に、適切にリクエストを検証しないため、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005355_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server"/>
    <sec:identifier>JVNDB-2012-005355</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005354:IBM Cognos Business Intelligence &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#36039;&#28304;&#12398;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005354_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005354_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005354_AD_1.html</id>
    <published>2012-11-15T16:38:55+09:00</published>
    <updated>2012-11-15T16:38:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Cognos Business Intelligence (BI) には、サービス運用妨害 (CPU 資源の消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005354_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:cognos_business_intelligence"/>
    <sec:identifier>JVNDB-2012-005354</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005353:IBM WebSphere Application Server &#12362;&#12424;&#12403; WebSphere Virtual Enterprise &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005353_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005353_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005353_AD_1.html</id>
    <published>2012-11-15T16:37:16+09:00</published>
    <updated>2012-11-15T16:37:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM WebSphere Application Server および WebSphere Virtual Enterprise のプロキシサーバには、サービス運用妨害 (デーモンの停止) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005353_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server"/>
    <sec:identifier>JVNDB-2012-005353</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005352:Microsoft .NET Framework &#12398;&#12522;&#12501;&#12524;&#12463;&#12471;&#12519;&#12531;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005352_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005352_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005352_AD_1.html</id>
    <published>2012-11-15T15:55:31+09:00</published>
    <updated>2012-11-15T15:55:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft .NET Framework のリフレクション実装内のコード最適化機能は、オブジェクト権限を適切に処理しないため、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「WPF 反映最適化の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005352_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_rt"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005352</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005351:Microsoft .NET Framework &#12398; Web &#12503;&#12525;&#12461;&#12471;&#33258;&#21205;&#30330;&#35211; (WPAD) &#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; JavaScript &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005351_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005351_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005351_AD_1.html</id>
    <published>2012-11-15T15:54:48+09:00</published>
    <updated>2012-11-15T15:54:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft .NET Framework の Web プロキシ自動発見 (WPAD) 機能は、プロキシ設定の取得中に返される構成データを検証しないため、任意の JavaScript コードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Web プロキシ自動発見 (WPAD) の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005351_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_rt"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005351</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005350:Microsoft Internet Explorer 9 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005350_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005350_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005350_AD_1.html</id>
    <published>2012-11-15T15:54:00+09:00</published>
    <updated>2012-11-15T15:54:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 9 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「CTreeNode の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005350_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005350</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005349:&#35079;&#25968;&#12398; Microsoft Windows &#35069;&#21697;&#12398;&#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#26119;&#26684;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005349_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005349_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005349_AD_1.html</id>
    <published>2012-11-15T15:53:28+09:00</published>
    <updated>2012-11-15T15:53:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft Windows 製品のカーネルモードドライバ内の win32k.sys には、解放済みメモリの使用 (Use-after-free) により、権限を取得される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Win32k の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005349_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <sec:identifier>JVNDB-2012-005349</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005348:Microsoft Excel &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005348_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005348_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005348_AD_1.html</id>
    <published>2012-11-15T15:52:50+09:00</published>
    <updated>2012-11-15T15:52:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Excel には、スタックベースのバッファオーバーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Excel のスタック オーバーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005348_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office:2011::mac_os"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack"/>
    <sec:identifier>JVNDB-2012-005348</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005347:Microsoft FTP Service for IIS &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005347_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005347_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005347_AD_1.html</id>
    <published>2012-11-15T15:52:05+09:00</published>
    <updated>2012-11-15T15:52:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft FTP Service for Internet Information Services (IIS) は、セッションにおいて TLS が有効になる前に、不特定のコマンドを実行することで、重要な情報を取得される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「FTP コマンド インジェクションの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005347_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ftp_service"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005347</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005346:Microsoft Internet Information Services &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#24773;&#22577;&#12434;&#30330;&#35211;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005346_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005346_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005346_AD_1.html</id>
    <published>2012-11-15T15:51:08+09:00</published>
    <updated>2012-11-15T15:51:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Information Services (IIS) には、操作ログに弱いアクセス権を用いるため、認証情報を発見される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「パスワード漏えいの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005346_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:iis"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005346</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005345:&#35079;&#25968;&#12398; Microsoft Windows &#35069;&#21697;&#12398;&#12459;&#12540;&#12493;&#12523;&#12514;&#12540;&#12489;&#12489;&#12521;&#12452;&#12496;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#26119;&#26684;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005345_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005345_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005345_AD_1.html</id>
    <published>2012-11-15T15:50:24+09:00</published>
    <updated>2012-11-15T15:50:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft Windows 製品のカーネルモードドライバ内の win32k.sys には、解放済みメモリの使用 (Use-after-free) により、権限を取得される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Win32k の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005345_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005345</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005344:Microsoft .NET Framework &#12398; ADO.NET &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#26119;&#26684;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005344_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005344_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005344_AD_1.html</id>
    <published>2012-11-15T15:49:15+09:00</published>
    <updated>2012-11-15T15:49:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft .NET Framework の ADO.NET 内の Entity Framework には、検索パスに関する処理に不備があるため、権限を取得される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「.NET Framework の安全でないライブラリのロードの脆弱性」と記載されています。  補足情報 : CWE による脆弱性タイプは、CWE-426: Untrusted Search Path (信頼性のない検索パス) と識別されています。 http://cwe.mitre.org/data/definitions/426.html&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005344_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::media_center_2005"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::tablet_pc_2005"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005344</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005343:Microsoft .NET Framework &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005343_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005343_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005343_AD_1.html</id>
    <published>2012-11-15T15:48:36+09:00</published>
    <updated>2012-11-15T15:48:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft .NET Framework は、出力データの作成時に信頼レベルを適切に配慮しないため、重要な情報を取得される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「セキュリティ情報を漏えいするコード アクセスの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005343_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005343</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005342:Microsoft .NET Framework &#12398;&#12522;&#12501;&#12524;&#12463;&#12471;&#12519;&#12531;&#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005342_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005342_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005342_AD_1.html</id>
    <published>2012-11-15T15:48:01+09:00</published>
    <updated>2012-11-15T15:48:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft .NET Framework のリフレクションの実装は、オブジェクト権限を適切に適用しないため、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「リフレクションをバイパスする脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005342_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework"/>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::media_center_2005"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::tablet_pc_2005"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012"/>
    <sec:identifier>JVNDB-2012-005342</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005341:Microsoft Excel &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005341_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005341_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005341_AD_1.html</id>
    <published>2012-11-15T14:25:22+09:00</published>
    <updated>2012-11-15T14:25:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Excel には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Excel SST の解放後の無効な長さの使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005341_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel"/>
    <category term="cpe:/a:microsoft:office:2008::mac_os"/>
    <category term="cpe:/a:microsoft:office:2011::mac_os"/>
    <sec:identifier>JVNDB-2012-005341</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005340:Microsoft Excel &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005340_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005340_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005340_AD_1.html</id>
    <published>2012-11-15T14:24:44+09:00</published>
    <updated>2012-11-15T14:24:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Excel には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Excel のメモリ破損の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005340_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack"/>
    <sec:identifier>JVNDB-2012-005340</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005339:Microsoft Excel &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005339_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005339_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005339_AD_1.html</id>
    <published>2012-11-15T14:23:36+09:00</published>
    <updated>2012-11-15T14:23:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Excel には、ヒープベースのバッファオーバーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Excel SerAuxErrBar のヒープ オーバーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005339_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel"/>
    <category term="cpe:/a:microsoft:office:2008::mac_os"/>
    <category term="cpe:/a:microsoft:office:2011::mac_os"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack"/>
    <sec:identifier>JVNDB-2012-005339</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005338:Microsoft Internet Explorer 9 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005338_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005338_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005338_AD_1.html</id>
    <published>2012-11-15T13:57:21+09:00</published>
    <updated>2012-11-15T13:57:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 9 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「CTreePos の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005338_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005338</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005337:Microsoft Internet Explorer 9 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005337_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005337_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005337_AD_1.html</id>
    <published>2012-11-15T13:56:52+09:00</published>
    <updated>2012-11-15T13:56:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Internet Explorer 9 には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「CFormElement の解放後使用の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005337_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005337</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005336:Microsoft Windows &#12398; Windows &#12471;&#12455;&#12523;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005336_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005336_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005336_AD_1.html</id>
    <published>2012-11-15T13:55:51+09:00</published>
    <updated>2012-11-15T13:55:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows の Windows シェルには、整数オーバーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Windows ブリーフケースの整数オーバーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005336_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005336</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005335:Microsoft Windows &#12398; Windows &#12471;&#12455;&#12523;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12450;&#12531;&#12480;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005335_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005335_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005335_AD_1.html</id>
    <published>2012-11-15T13:55:23+09:00</published>
    <updated>2012-11-15T13:55:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows の Windows シェルには、整数アンダーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Windows ブリーフケースの整数アンダーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005335_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-005335</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5851:chrome, webkit, safari: html/parser/XSSAuditor.cpp in WebCore in WebKit, as...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5851_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5851_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5851_AD_1.html</id>
    <published>2012-11-15T00:00:00+09:00</published>
    <updated>2012-11-15T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
html/parser/XSSAuditor.cpp in WebCore in WebKit, as used in Google Chrome through 22 and Safari 5.1.7, does not consider all possible output contexts of reflected data, which makes it easier for remote attackers to bypass a cross-site scripting (XSS) protection mechanism via a crafted string, aka rdar problem 12019108.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5851_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:safari:5.1.7"/>
    <category term="cpe:/a:apple:webkit"/>
    <category term="cpe:/a:google:chrome:22.0.1229.0"/>
    <category term="cpe:/a:google:chrome:22.0.1229.1"/>
    <category term="cpe:/a:google:chrome:22.0.1229.10"/>
    <category term="cpe:/a:google:chrome:22.0.1229.11"/>
    <category term="cpe:/a:google:chrome:22.0.1229.12"/>
    <category term="cpe:/a:google:chrome:22.0.1229.14"/>
    <category term="cpe:/a:google:chrome:22.0.1229.16"/>
    <category term="cpe:/a:google:chrome:22.0.1229.17"/>
    <category term="cpe:/a:google:chrome:22.0.1229.18"/>
    <category term="cpe:/a:google:chrome:22.0.1229.2"/>
    <category term="cpe:/a:google:chrome:22.0.1229.20"/>
    <category term="cpe:/a:google:chrome:22.0.1229.21"/>
    <category term="cpe:/a:google:chrome:22.0.1229.22"/>
    <category term="cpe:/a:google:chrome:22.0.1229.23"/>
    <category term="cpe:/a:google:chrome:22.0.1229.24"/>
    <category term="cpe:/a:google:chrome:22.0.1229.25"/>
    <category term="cpe:/a:google:chrome:22.0.1229.26"/>
    <category term="cpe:/a:google:chrome:22.0.1229.27"/>
    <category term="cpe:/a:google:chrome:22.0.1229.28"/>
    <category term="cpe:/a:google:chrome:22.0.1229.29"/>
    <category term="cpe:/a:google:chrome:22.0.1229.3"/>
    <category term="cpe:/a:google:chrome:22.0.1229.31"/>
    <category term="cpe:/a:google:chrome:22.0.1229.32"/>
    <category term="cpe:/a:google:chrome:22.0.1229.33"/>
    <category term="cpe:/a:google:chrome:22.0.1229.35"/>
    <category term="cpe:/a:google:chrome:22.0.1229.36"/>
    <category term="cpe:/a:google:chrome:22.0.1229.37"/>
    <category term="cpe:/a:google:chrome:22.0.1229.39"/>
    <category term="cpe:/a:google:chrome:22.0.1229.4"/>
    <category term="cpe:/a:google:chrome:22.0.1229.48"/>
    <category term="cpe:/a:google:chrome:22.0.1229.49"/>
    <category term="cpe:/a:google:chrome:22.0.1229.50"/>
    <category term="cpe:/a:google:chrome:22.0.1229.51"/>
    <category term="cpe:/a:google:chrome:22.0.1229.52"/>
    <category term="cpe:/a:google:chrome:22.0.1229.53"/>
    <category term="cpe:/a:google:chrome:22.0.1229.54"/>
    <category term="cpe:/a:google:chrome:22.0.1229.55"/>
    <category term="cpe:/a:google:chrome:22.0.1229.56"/>
    <category term="cpe:/a:google:chrome:22.0.1229.57"/>
    <category term="cpe:/a:google:chrome:22.0.1229.58"/>
    <category term="cpe:/a:google:chrome:22.0.1229.59"/>
    <category term="cpe:/a:google:chrome:22.0.1229.6"/>
    <category term="cpe:/a:google:chrome:22.0.1229.60"/>
    <category term="cpe:/a:google:chrome:22.0.1229.62"/>
    <category term="cpe:/a:google:chrome:22.0.1229.63"/>
    <category term="cpe:/a:google:chrome:22.0.1229.64"/>
    <category term="cpe:/a:google:chrome:22.0.1229.65"/>
    <category term="cpe:/a:google:chrome:22.0.1229.67"/>
    <category term="cpe:/a:google:chrome:22.0.1229.7"/>
    <category term="cpe:/a:google:chrome:22.0.1229.76"/>
    <category term="cpe:/a:google:chrome:22.0.1229.78"/>
    <category term="cpe:/a:google:chrome:22.0.1229.79"/>
    <category term="cpe:/a:google:chrome:22.0.1229.8"/>
    <category term="cpe:/a:google:chrome:22.0.1229.89"/>
    <category term="cpe:/a:google:chrome:22.0.1229.9"/>
    <category term="cpe:/a:google:chrome:22.0.1229.91"/>
    <category term="cpe:/a:google:chrome:22.0.1229.92"/>
    <category term="cpe:/a:google:chrome:22.0.1229.94"/>
    <category term="cpe:/a:google:chrome:22.0.1229.95"/>
    <category term="cpe:/a:google:chrome:22.0.1229.96 and previous versions"/>
    <sec:identifier>CVE-2012-5851</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4955:openmanage_server_administrator: Cross-site scripting (XSS) vulnerability in Dell Op...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4955_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4955_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4955_AD_1.html</id>
    <published>2012-11-15T00:00:00+09:00</published>
    <updated>2012-11-15T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Dell OpenManage Server Administrator (OMSA) before 6.5.0.1, 7.0 before 7.0.0.1, and 7.1 before 7.1.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4955_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:dell:openmanage_server_administrator:1.00.0000"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:4.3.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:4.4.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:4.5.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.0.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.1.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.1.0.1"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.2.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.3.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.4.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.5.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:5.5.0.1"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:6.2.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:6.3.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:6.4.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:6.5.0 and previous versions"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:7.0.0"/>
    <category term="cpe:/a:dell:openmanage_server_administrator:7.1.0"/>
    <sec:identifier>CVE-2012-4955</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4954:vanilla_forums: The edit-profile page in Vanilla Forums before 2.1a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4954_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4954_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4954_AD_1.html</id>
    <published>2012-11-15T00:00:00+09:00</published>
    <updated>2012-11-15T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The edit-profile page in Vanilla Forums before 2.1a32 allows remote authenticated users to modify arbitrary profile settings by replacing the UserID value during a man-in-the-middle attack, related to a &quot;parameter manipulation&quot; issue.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4954_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.10"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.11"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.12"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.13"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.14"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.15"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.16"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.16.1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.10"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.2"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.3"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.4"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.5"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.6"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.7"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.8"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.17.9"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18.1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18.3"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18.4 and previous versions"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:a3"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:b1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:b2"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:b4"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:rc1"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:rc2"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.18:rc3"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.2"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.3"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.4"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.5"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.6"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.7"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.8"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.0.9"/>
    <category term="cpe:/a:vanillaforums:vanilla_forums:2.1:a26 and previous versions"/>
    <sec:identifier>CVE-2012-4954</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4951:vericentre_web_console: Multiple SQL injection vulnerabilities in terminal/...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4951_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4951_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4951_AD_1.html</id>
    <published>2012-11-15T00:00:00+09:00</published>
    <updated>2012-11-15T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in terminal/paramedit.aspx in VeriFone VeriCentre Web Console before 2.2 build 36 allow remote attackers to execute arbitrary SQL commands via the (1) TerminalId, (2) ModelName, or (3) ApplicationName parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4951_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:verifone:vericentre_web_console:2.0"/>
    <category term="cpe:/a:verifone:vericentre_web_console:2.0.1"/>
    <category term="cpe:/a:verifone:vericentre_web_console:2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4951</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005334:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005334_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005334_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005334_AD_1.html</id>
    <published>2012-11-14T16:07:35+09:00</published>
    <updated>2012-11-14T16:07:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005334_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005334</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005333:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005333_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005333_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005333_AD_1.html</id>
    <published>2012-11-14T16:07:19+09:00</published>
    <updated>2012-11-14T16:07:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005333_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005333</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005332:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005332_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005332_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005332_AD_1.html</id>
    <published>2012-11-14T16:07:03+09:00</published>
    <updated>2012-11-14T16:07:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005332_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005332</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005331:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005331_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005331_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005331_AD_1.html</id>
    <published>2012-11-14T16:06:49+09:00</published>
    <updated>2012-11-14T16:06:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005331_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005331</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005330:C3-ilex EOScada &#12398; EOSCoreScada.exe &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12540;&#12514;&#12531;&#20877;&#36215;&#21205;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005330_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005330_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005330_AD_1.html</id>
    <published>2012-11-14T16:03:06+09:00</published>
    <updated>2012-11-14T16:03:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
C3-ilex EOScada の EOSCoreScada.exe には、サービス運用妨害 (デーモン再起動) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005330_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada"/>
    <sec:identifier>JVNDB-2012-005330</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005329:C3-ilex EOScada &#12398; EOSDataServer.exe &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005329_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005329_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005329_AD_1.html</id>
    <published>2012-11-14T16:02:50+09:00</published>
    <updated>2012-11-14T16:02:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
C3-ilex EOScada の EOSDataServer.exe には、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005329_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada"/>
    <sec:identifier>JVNDB-2012-005329</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005328:C3-ilex EOScada &#12398; eosfailoverservice.exe &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24179;&#25991;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005328_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005328_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005328_AD_1.html</id>
    <published>2012-11-14T16:02:35+09:00</published>
    <updated>2012-11-14T16:02:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
C3-ilex EOScada の eosfailoverservice.exe には、重要な平文情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005328_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada"/>
    <sec:identifier>JVNDB-2012-005328</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005327:C3-ilex EOScada &#12398; eosfailoverservice.exe &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005327_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005327_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005327_AD_1.html</id>
    <published>2012-11-14T16:02:07+09:00</published>
    <updated>2012-11-14T16:02:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
C3-ilex EOScada の eosfailoverservice.exe には、サービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005327_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada"/>
    <sec:identifier>JVNDB-2012-005327</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000102:Android OS &#12434;&#25645;&#36617;&#12375;&#12383;&#35079;&#25968;&#12398;&#31471;&#26411;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000102_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000102_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000102_AD_1.html</id>
    <published>2012-11-14T12:01:31+09:00</published>
    <updated>2012-11-14T12:01:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android OS を搭載した一部の端末には、サービス運用妨害 (DoS) の脆弱性が存在します。  Android OS を搭載した一部の端末には、特定のシステム領域を参照する際の処理に問題があり、サービス運用妨害 (DoS) の脆弱性が存在します。  なお、本脆弱性は Android OS を搭載する端末の実装に依存する問題です。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 株式会社フォティーンフォティ技術研究所 大居　司 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000102_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:multiple_vendors"/>
    <sec:identifier>JVNDB-2012-000102</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005326:Vanilla Forums &#12395;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005326_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005326_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005326_AD_1.html</id>
    <published>2012-11-14T09:55:22+09:00</published>
    <updated>2012-11-14T09:55:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Vanilla Forums には、アクセス制限不備の脆弱性が存在します。  Vanilla Forums のプロフィール編集画面には、アクセス制限不備の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005326_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vanillaforums:vanilla_forums"/>
    <sec:identifier>JVNDB-2012-005326</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005325:ArcGIS for Server &#12395; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005325_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005325_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005325_AD_1.html</id>
    <published>2012-11-14T09:44:53+09:00</published>
    <updated>2012-11-14T09:44:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Esri が提供する ArcGIS for Server には、SQL インジェクションの脆弱性が存在します。  Esri が提供する ArcGIS for Server には、フォームに入力された文字列の処理に問題があり、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005325_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:esri:arcgis"/>
    <sec:identifier>JVNDB-2012-005325</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5860:id-one_cosmo: Unspecified vulnerability on Oberthur ID-One COSMO ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5860_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5860_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5860_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability on Oberthur ID-One COSMO 5.2, 5.2a, and 64 smart cards makes it easier for attackers to defeat cryptographic protection mechanisms by leveraging the generation of non-compliant public keys.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5860_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:oberthur:id-one_cosmo:5.2"/>
    <category term="cpe:/h:oberthur:id-one_cosmo:5.2:a"/>
    <category term="cpe:/h:oberthur:id-one_cosmo:64"/>
    <sec:identifier>CVE-2012-5860</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5459:player, workstation: Untrusted search path vulnerability in VMware Works...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5459_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5459_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5459_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Untrusted search path vulnerability in VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows allows host OS users to gain host OS privileges via a Trojan horse DLL in a &quot;system folder.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5459_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:player:4.0"/>
    <category term="cpe:/a:vmware:player:4.0.0.18997"/>
    <category term="cpe:/a:vmware:player:4.0.1"/>
    <category term="cpe:/a:vmware:player:4.0.2"/>
    <category term="cpe:/a:vmware:player:4.0.3"/>
    <category term="cpe:/a:vmware:player:4.0.4"/>
    <category term="cpe:/a:vmware:workstation:8.0"/>
    <category term="cpe:/a:vmware:workstation:8.0.0.18997"/>
    <category term="cpe:/a:vmware:workstation:8.0.1"/>
    <category term="cpe:/a:vmware:workstation:8.0.1.27038"/>
    <category term="cpe:/a:vmware:workstation:8.0.2"/>
    <category term="cpe:/a:vmware:workstation:8.0.3"/>
    <category term="cpe:/a:vmware:workstation:8.0.4"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5459</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5458:player, workstation: VMware Workstation 8.x before 8.0.5 and VMware Play...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5458_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5458_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5458_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a crafted application.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5458_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:player:4.0"/>
    <category term="cpe:/a:vmware:player:4.0.0.18997"/>
    <category term="cpe:/a:vmware:player:4.0.1"/>
    <category term="cpe:/a:vmware:player:4.0.2"/>
    <category term="cpe:/a:vmware:player:4.0.3"/>
    <category term="cpe:/a:vmware:player:4.0.4"/>
    <category term="cpe:/a:vmware:workstation:8.0"/>
    <category term="cpe:/a:vmware:workstation:8.0.0.18997"/>
    <category term="cpe:/a:vmware:workstation:8.0.1"/>
    <category term="cpe:/a:vmware:workstation:8.0.1.27038"/>
    <category term="cpe:/a:vmware:workstation:8.0.2"/>
    <category term="cpe:/a:vmware:workstation:8.0.3"/>
    <category term="cpe:/a:vmware:workstation:8.0.4"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5458</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4953:antivirus, endpoint_protection, scan_engine: The decomposer engine in Symantec Endpoint Protecti...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4953_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4953_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4953_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The decomposer engine in Symantec Endpoint Protection (SEP) 11.0, Symantec Endpoint Protection Small Business Edition 12.0, Symantec AntiVirus Corporate Edition (SAVCE) 10.x, and Symantec Scan Engine (SSE) before 5.2.8 does not properly perform bounds checks of the contents of CAB archives, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4953_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:antivirus:10.1.0:-:corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.4::corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.5::corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.6::corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.7::corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.8::corporate"/>
    <category term="cpe:/a:symantec:antivirus:10.1.9::corporate"/>
    <category term="cpe:/a:symantec:endpoint_protection:11.0"/>
    <category term="cpe:/a:symantec:endpoint_protection:12.0:-:small_business"/>
    <category term="cpe:/a:symantec:scan_engine:5.2 and previous versions"/>
    <sec:identifier>CVE-2012-4953</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4949:arcgis: SQL injection vulnerability in ESRI ArcGIS 10.1 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4949_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4949_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4949_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in ESRI ArcGIS 10.1 allows remote authenticated users to execute arbitrary SQL commands via the where parameter to a query URI for a REST service.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4949_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:esri:arcgis:10.1"/>
    <sec:identifier>CVE-2012-4949</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4948:fortigate-1000c, fortigate-100d, fortigate-110c, fortigate-1240b, fortigate-200b,...: The default configuration of Fortinet Fortigate UTM...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4948_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4948_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4948_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The default configuration of Fortinet Fortigate UTM appliances uses the same Certification Authority certificate and same private key across different customers' installations, which makes it easier for man-in-the-middle attackers to spoof SSL servers by leveraging the presence of the Fortinet_CA_SSLProxy certificate in a list of trusted root certification authorities.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4948_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:fortinet:fortigate-1000c:-"/>
    <category term="cpe:/h:fortinet:fortigate-100d:-"/>
    <category term="cpe:/h:fortinet:fortigate-110c:-"/>
    <category term="cpe:/h:fortinet:fortigate-1240b:-"/>
    <category term="cpe:/h:fortinet:fortigate-200b:-"/>
    <category term="cpe:/h:fortinet:fortigate-20c:-"/>
    <category term="cpe:/h:fortinet:fortigate-300c:-"/>
    <category term="cpe:/h:fortinet:fortigate-3040b:-"/>
    <category term="cpe:/h:fortinet:fortigate-310b:-"/>
    <category term="cpe:/h:fortinet:fortigate-311b:-"/>
    <category term="cpe:/h:fortinet:fortigate-3140b:-"/>
    <category term="cpe:/h:fortinet:fortigate-3240c:-"/>
    <category term="cpe:/h:fortinet:fortigate-3810a:-"/>
    <category term="cpe:/h:fortinet:fortigate-3950b:-"/>
    <category term="cpe:/h:fortinet:fortigate-40c:-"/>
    <category term="cpe:/h:fortinet:fortigate-5001a-sw:-"/>
    <category term="cpe:/h:fortinet:fortigate-5001b:-"/>
    <category term="cpe:/h:fortinet:fortigate-5020:-"/>
    <category term="cpe:/h:fortinet:fortigate-5060:-"/>
    <category term="cpe:/h:fortinet:fortigate-50b:-"/>
    <category term="cpe:/h:fortinet:fortigate-5101c:-"/>
    <category term="cpe:/h:fortinet:fortigate-5140b:-"/>
    <category term="cpe:/h:fortinet:fortigate-600c:-"/>
    <category term="cpe:/h:fortinet:fortigate-60c:-"/>
    <category term="cpe:/h:fortinet:fortigate-620b:-"/>
    <category term="cpe:/h:fortinet:fortigate-800c:-"/>
    <category term="cpe:/h:fortinet:fortigate-80c:-"/>
    <category term="cpe:/h:fortinet:fortigate-voice-80c:-"/>
    <category term="cpe:/h:fortinet:fortigaterugged-100c:-"/>
    <sec:identifier>CVE-2012-4948</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4853:websphere_application_server: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4853_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4853_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4853_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in IBM WebSphere Application Server 6.1 before 6.1.0.45, 7.0 before 7.0.0.25, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1 allows remote attackers to hijack the authentication of arbitrary users for requests that trigger information disclosure.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4853_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server:6.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.11"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.12"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.15"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.17"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.19"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.2"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.21"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.23"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.25"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.27"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.29"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.31"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.33"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.35"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.37"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.39"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.41"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.43"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.5"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.7"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.0.9"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.13"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.14"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.5"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.6"/>
    <category term="cpe:/a:ibm:websphere_application_server:6.1.7"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.11"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.13"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.15"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.17"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.19"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.2"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.21"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.23"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.4"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.5"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.6"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.7"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.8"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.9"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.2"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.4"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.5.0.0"/>
    <sec:identifier>CVE-2012-4853</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4851:websphere_application_server: Cross-site scripting (XSS) vulnerability in IBM Web...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4851_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4851_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4851_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server 8.5 Liberty Profile before 8.5.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4851_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server:8.5.0.0:-:liberty_profile and previous versions"/>
    <sec:identifier>CVE-2012-4851</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4850:websphere_application_server: IBM WebSphere Application Server 8.5 Liberty Profil...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4850_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4850_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4850_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM WebSphere Application Server 8.5 Liberty Profile before 8.5.0.1, when JAX-RS is used, does not properly validate requests, which allows remote attackers to gain privileges via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4850_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server:8.5.0.0:-:liberty_profile"/>
    <sec:identifier>CVE-2012-4850</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4847:cognos_business_intelligence: IBM Cognos Business Intelligence (BI) 8.4 and 8.4.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4847_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4847_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4847_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
IBM Cognos Business Intelligence (BI) 8.4 and 8.4.1 allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted request containing a zero-valued byte.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4847_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:cognos_business_intelligence:8.4"/>
    <category term="cpe:/a:ibm:cognos_business_intelligence:8.4.1"/>
    <sec:identifier>CVE-2012-4847</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3569:ovf_tool, workstation, player: Format string vulnerability in VMware OVF Tool 2.1 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3569_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3569_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3569_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Player 4.x before 4.0.5, and other products, allows user-assisted remote attackers to execute arbitrary code via a crafted OVF file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3569_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:vmware:ovf_tool:2.1"/>
    <category term="cpe:/a:vmware:player:4.0"/>
    <category term="cpe:/a:vmware:player:4.0.0.18997"/>
    <category term="cpe:/a:vmware:player:4.0.1"/>
    <category term="cpe:/a:vmware:player:4.0.2"/>
    <category term="cpe:/a:vmware:player:4.0.3"/>
    <category term="cpe:/a:vmware:player:4.0.4"/>
    <category term="cpe:/a:vmware:workstation:8.0"/>
    <category term="cpe:/a:vmware:workstation:8.0.0.18997"/>
    <category term="cpe:/a:vmware:workstation:8.0.1"/>
    <category term="cpe:/a:vmware:workstation:8.0.1.27038"/>
    <category term="cpe:/a:vmware:workstation:8.0.2"/>
    <category term="cpe:/a:vmware:workstation:8.0.3"/>
    <category term="cpe:/a:vmware:workstation:8.0.4"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-3569</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3330:websphere_application_server: The proxy server in IBM WebSphere Application Serve...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3330_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3330_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3330_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, and WebSphere Virtual Enterprise, allows remote attackers to cause a denial of service (daemon outage) via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3330_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:websphere_application_server:7.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.11"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.13"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.15"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.17"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.19"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.2"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.21"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.23"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.25"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.4"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.5"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.6"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.7"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.8"/>
    <category term="cpe:/a:ibm:websphere_application_server:7.0.0.9"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.0"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.1"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.2"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.3"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.0.0.4"/>
    <category term="cpe:/a:ibm:websphere_application_server:8.5.0.0"/>
    <sec:identifier>CVE-2012-3330</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2619:bcm4325, bcm4329: The Broadcom BCM4325 and BCM4329 Wi-Fi chips, as us...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2619_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2619_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2619_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Broadcom BCM4325 and BCM4329 Wi-Fi chips, as used in certain Acer, Apple, Asus, Ford, HTC, Kyocera, LG, Malata, Motorola, Nokia, Pantech, Samsung, and Sony products, allow remote attackers to cause a denial of service (out-of-bounds read and Wi-Fi outage) via an RSN 802.11i information element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2619_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:broadcom:bcm4325"/>
    <category term="cpe:/h:broadcom:bcm4329"/>
    <sec:identifier>CVE-2012-2619</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4777:.net_framework: The code-optimization feature in the reflection imp...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4777_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4777_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4777_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The code-optimization feature in the reflection implementation in Microsoft .NET Framework 4 and 4.5 does not properly enforce object permissions, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka &quot;WPF Reflection Optimization Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4777_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework:4.0"/>
    <category term="cpe:/a:microsoft:.net_framework:4.5"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_rt:-"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-4777</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4776:.net_framework: The Web Proxy Auto-Discovery (WPAD) functionality i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4776_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4776_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4776_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Web Proxy Auto-Discovery (WPAD) functionality in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not validate configuration data that is returned during acquisition of proxy settings, which allows remote attackers to execute arbitrary JavaScript code by providing crafted data during execution of (1) an XAML browser application (aka XBAP) or (2) a .NET Framework application, aka &quot;Web Proxy Auto-Discovery Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4776_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework:2.0:sp2"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5.1"/>
    <category term="cpe:/a:microsoft:.net_framework:4.0"/>
    <category term="cpe:/a:microsoft:.net_framework:4.5"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-4776</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4775:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4775_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4775_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4775_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a crafted web site, aka &quot;CTreeNode Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4775_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <sec:identifier>CVE-2012-4775</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2553:windows_7, windows_server_2003, windows_server_2008, windows_vista, windows_xp: Use-after-free vulnerability in win32k.sys in the k...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2553_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2553_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2553_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application, aka &quot;Win32k Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2553_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_vista:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-2553</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2543:excel, excel_viewer, office, office_compatibility_pack: Stack-based buffer overflow in Microsoft Excel 2007...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2543_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2543_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2543_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in Microsoft Excel 2007 SP2 and SP3 and 2010 SP1; Office 2011 for Mac; Excel Viewer; and Office Compatibility Pack SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka &quot;Excel Stack Overflow Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2543_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel:2007:sp2"/>
    <category term="cpe:/a:microsoft:excel:2007:sp3"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x64"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x86"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office:2011::mac"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp2"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp3"/>
    <sec:identifier>CVE-2012-2543</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2532:ftp_service: Microsoft FTP Service 7.0 and 7.5 for Internet Info...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2532_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2532_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2532_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) processes unspecified commands before TLS is enabled for a session, which allows remote attackers to obtain sensitive information by reading the replies to these commands, aka &quot;FTP Command Injection Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2532_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:ftp_service:7.0"/>
    <category term="cpe:/a:microsoft:ftp_service:7.5"/>
    <category term="cpe:/a:microsoft:iis:7.0"/>
    <category term="cpe:/a:microsoft:iis:7.5"/>
    <category term="cpe:/o:microsoft:windows_7:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <sec:identifier>CVE-2012-2532</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2531:iis: Microsoft Internet Information Services (IIS) 7.5 u...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2531_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2531_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2531_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Internet Information Services (IIS) 7.5 uses weak permissions for the Operational log, which allows local users to discover credentials by reading this file, aka &quot;Password Disclosure Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2531_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:iis:7.5"/>
    <category term="cpe:/o:microsoft:windows_7:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <sec:identifier>CVE-2012-2531</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2530:windows_7, windows_server_2003, windows_server_2008, windows_vista, windows_xp: Use-after-free vulnerability in win32k.sys in the k...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2530_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2530_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2530_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application, aka &quot;Win32k Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2530_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7:-:sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008:-::itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista:-:sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-2530</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2519:.net_framework: Untrusted search path vulnerability in Entity Frame...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2519_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2519_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2519_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Untrusted search path vulnerability in Entity Framework in ADO.NET in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, and 4 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .NET application, aka &quot;.NET Framework Insecure Library Loading Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2519_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework:1.0:sp3"/>
    <category term="cpe:/a:microsoft:.net_framework:1.1:sp1"/>
    <category term="cpe:/a:microsoft:.net_framework:2.0:sp2"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5.1"/>
    <category term="cpe:/a:microsoft:.net_framework:4.0"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:2005:sp3:media_center"/>
    <category term="cpe:/o:microsoft:windows_xp:2005:sp3:tablet_pc"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-2519</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1896:.net_framework: Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1896_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1896_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1896_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly consider trust levels during construction of output data, which allows remote attackers to obtain sensitive information via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka &quot;Code Access Security Info Disclosure Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1896_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework:2.0:sp2"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5.1"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-1896</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1895:.net_framework: The reflection implementation in Microsoft .NET Fra...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1895_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1895_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1895_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The reflection implementation in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5.1, and 4 does not properly enforce object permissions, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET Framework application, aka &quot;Reflection Bypass Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1895_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:.net_framework:1.0:sp3"/>
    <category term="cpe:/a:microsoft:.net_framework:1.1:sp1"/>
    <category term="cpe:/a:microsoft:.net_framework:2.0:sp2"/>
    <category term="cpe:/a:microsoft:.net_framework:3.5.1"/>
    <category term="cpe:/a:microsoft:.net_framework:4.0"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:2005:sp3:media_center"/>
    <category term="cpe:/o:microsoft:windows_xp:2005:sp3:tablet_pc"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-1895</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1887:excel, office: Use-after-free vulnerability in Microsoft Excel 200...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1887_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1887_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1887_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1, and Office 2008 and 2011 for Mac, allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka &quot;Excel SST Invalid Length Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1887_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel:2003:sp3"/>
    <category term="cpe:/a:microsoft:excel:2007:sp2"/>
    <category term="cpe:/a:microsoft:excel:2007:sp3"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x64"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x86"/>
    <category term="cpe:/a:microsoft:office:2008::mac"/>
    <category term="cpe:/a:microsoft:office:2011::mac"/>
    <sec:identifier>CVE-2012-1887</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1886:excel, excel_viewer, office_compatibility_pack: Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 201...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1886_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1886_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1886_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Excel Viewer; and Office Compatibility Pack SP2 and SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted spreadsheet, aka &quot;Excel Memory Corruption Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1886_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel:2003:sp3"/>
    <category term="cpe:/a:microsoft:excel:2007:sp2"/>
    <category term="cpe:/a:microsoft:excel:2007:sp3"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x64"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x86"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp2"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp3"/>
    <sec:identifier>CVE-2012-1886</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1885:excel, office, office_compatibility_pack: Heap-based buffer overflow in Microsoft Excel 2003 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1885_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1885_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1885_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Office 2008 and 2011 for Mac; and Office Compatibility Pack SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka &quot;Excel SerAuxErrBar Heap Overflow Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1885_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel:2003:sp3"/>
    <category term="cpe:/a:microsoft:excel:2007:sp2"/>
    <category term="cpe:/a:microsoft:excel:2007:sp3"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x64"/>
    <category term="cpe:/a:microsoft:excel:2010:sp1:x86"/>
    <category term="cpe:/a:microsoft:office:2008::mac"/>
    <category term="cpe:/a:microsoft:office:2011::mac"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp2"/>
    <category term="cpe:/a:microsoft:office_compatibility_pack::sp3"/>
    <sec:identifier>CVE-2012-1885</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1539:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1539_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1539_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1539_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a crafted web site, aka &quot;CTreePos Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1539_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <sec:identifier>CVE-2012-1539</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1538:internet_explorer: Use-after-free vulnerability in Microsoft Internet ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1538_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1538_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1538_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a crafted web site, aka &quot;CFormElement Use After Free Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1538_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:internet_explorer:9"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <sec:identifier>CVE-2012-1538</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1528:windows_7, windows_8, windows_server_2003, windows_server_2008, windows_server_20...: Integer overflow in Windows Shell in Microsoft Wind...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1528_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1528_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1528_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in Windows Shell in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, and Windows Server 2012 allows local users to gain privileges via a crafted briefcase, aka &quot;Windows Briefcase Integer Overflow Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1528_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-1528</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1527:windows_7, windows_8, windows_server_2003, windows_server_2008, windows_server_20...: Integer underflow in Windows Shell in Microsoft Win...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1527_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1527_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1527_AD_1.html</id>
    <published>2012-11-14T00:00:00+09:00</published>
    <updated>2012-11-14T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer underflow in Windows Shell in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, and Windows Server 2012 allows local users to gain privileges via a crafted briefcase, aka &quot;Windows Briefcase Integer Underflow Vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1527_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_7:::x86"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_7::sp1:x86"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x64"/>
    <category term="cpe:/o:microsoft:windows_8:-:-:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2003::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::sp2:x86"/>
    <category term="cpe:/o:microsoft:windows_server_2008:r2:sp1:x64"/>
    <category term="cpe:/o:microsoft:windows_server_2012:-"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2"/>
    <category term="cpe:/o:microsoft:windows_vista::sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp:-:sp2:x64"/>
    <category term="cpe:/o:microsoft:windows_xp::sp3"/>
    <sec:identifier>CVE-2012-1527</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005324:Joomla! &#12395;&#12362;&#12369;&#12427;&#12463;&#12522;&#12483;&#12463;&#12472;&#12515;&#12483;&#12461;&#12531;&#12464;&#25915;&#25731;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005324_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005324_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005324_AD_1.html</id>
    <published>2012-11-13T16:14:47+09:00</published>
    <updated>2012-11-13T16:14:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! には、クリックジャッキング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005324_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>JVNDB-2012-005324</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005323:&#35079;&#25968;&#12398; OpenStack &#35069;&#21697;&#12398; v2 API &#12395;&#12362;&#12369;&#12427;&#20445;&#35703;&#12373;&#12428;&#12390;&#12356;&#12394;&#12356;&#12452;&#12513;&#12540;&#12472;&#12434;&#21066;&#38500;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005323_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005323_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005323_AD_1.html</id>
    <published>2012-11-13T16:14:03+09:00</published>
    <updated>2012-11-13T16:14:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の OpenStack 製品の v2 API には、保護されていないイメージを削除される脆弱性が存在します。  本脆弱性は、CVE-2012-4573 に対する修正が不十分だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005323_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex"/>
    <category term="cpe:/a:openstack:folsom"/>
    <category term="cpe:/a:openstack:glance"/>
    <sec:identifier>JVNDB-2012-005323</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005322:Request Tracker &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005322_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005322_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005322_AD_1.html</id>
    <published>2012-11-13T16:13:23+09:00</published>
    <updated>2012-11-13T16:13:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Request Tracker (RT) には、引数の挿入により、任意のファイルを作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005322_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt"/>
    <sec:identifier>JVNDB-2012-005322</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005321:Request Tracker &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522; (CSRF) &#20445;&#35703;&#12513;&#12459;&#12491;&#12474;&#12512;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005321_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005321_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005321_AD_1.html</id>
    <published>2012-11-13T16:12:54+09:00</published>
    <updated>2012-11-13T16:12:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Request Tracker (RT) には、&quot;confused deputy (混乱した使節)&quot; 攻撃を実行されることにより、クロスサイトリクエストフォージェリ (CSRF) 保護メカニズムを回避され、任意の状態を変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005321_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt"/>
    <sec:identifier>JVNDB-2012-005321</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005320:Request Tracker &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005320_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005320_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005320_AD_1.html</id>
    <published>2012-11-13T16:11:16+09:00</published>
    <updated>2012-11-13T16:11:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Request Tracker (RT) には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005320_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt"/>
    <sec:identifier>JVNDB-2012-005320</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005319:Request Tracker &#29992; FAQ &#12510;&#12493;&#12540;&#12472;&#12515;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12463;&#12521;&#12473;&#12398;&#20219;&#24847;&#12398;&#35352;&#20107;&#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005319_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005319_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005319_AD_1.html</id>
    <published>2012-11-13T16:10:12+09:00</published>
    <updated>2012-11-13T16:10:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Request Tracker (RTFM) 用 FAQ マネージャは、ユーザ権限を適切にチェックしないため、任意のクラスの任意の記事を作成される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005319_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rtfm"/>
    <sec:identifier>JVNDB-2012-005319</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005318:Request Tracker &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12513;&#12540;&#12523;&#12504;&#12483;&#12480;&#12434;&#25407;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005318_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005318_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005318_AD_1.html</id>
    <published>2012-11-13T16:08:51+09:00</published>
    <updated>2012-11-13T16:08:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Request Tracker (RT) には、任意のメールヘッダを挿入される、フィッシング攻撃を実行される、または重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005318_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt"/>
    <sec:identifier>JVNDB-2012-005318</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005317:&#35079;&#25968;&#12398; OpenStack &#35069;&#21697;&#12398; v1 API &#12395;&#12362;&#12369;&#12427;&#20445;&#35703;&#12373;&#12428;&#12390;&#12356;&#12394;&#12356;&#12452;&#12513;&#12540;&#12472;&#12434;&#21066;&#38500;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005317_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005317_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005317_AD_1.html</id>
    <published>2012-11-13T16:08:04+09:00</published>
    <updated>2012-11-13T16:08:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の OpenStack 製品の v1 API には、保護されていないイメージを削除される脆弱性が存在します。  本脆弱性は、CVE-2012-5482 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005317_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex"/>
    <category term="cpe:/a:openstack:folsom"/>
    <category term="cpe:/a:openstack:glance"/>
    <sec:identifier>JVNDB-2012-005317</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005316:ppm2tiff &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005316_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005316_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005316_AD_1.html</id>
    <published>2012-11-13T16:05:43+09:00</published>
    <updated>2012-11-13T16:05:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ppm2tiff は、TIFFScanlineSize 関数の戻り値をチェックしないため、サービス運用妨害 (クラッシュ) 状態になる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005316_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libtiff:libtiff"/>
    <sec:identifier>JVNDB-2012-005316</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005315:Drupal &#12398; OpenID &#12514;&#12472;&#12517;&#12540;&#12523;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005315_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005315_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005315_AD_1.html</id>
    <published>2012-11-13T15:59:10+09:00</published>
    <updated>2012-11-13T15:59:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal の OpenID モジュールには、任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005315_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal"/>
    <sec:identifier>JVNDB-2012-005315</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005314:Drupal &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005314_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005314_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005314_AD_1.html</id>
    <published>2012-11-13T15:58:09+09:00</published>
    <updated>2012-11-13T15:58:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal には、&quot;transient conditions (一時的な条件)&quot; に関連して、重要な情報を取得される、Drupal を再インストールされる、および任意の PHP コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005314_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal"/>
    <sec:identifier>JVNDB-2012-005314</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005313:cgit &#12398; syntax-highlighting.sh &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005313_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005313_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005313_AD_1.html</id>
    <published>2012-11-13T15:55:01+09:00</published>
    <updated>2012-11-13T15:55:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
cgit の syntax-highlighting.sh には、引数の挿入により、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005313_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lars_hjemli:cgit"/>
    <sec:identifier>JVNDB-2012-005313</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005312:IcedTea-Web &#12398; IcedTeaScriptablePluginObject.cc &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005312_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005312_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005312_AD_1.html</id>
    <published>2012-11-13T15:50:01+09:00</published>
    <updated>2012-11-13T15:50:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IcedTea-Web の IcedTeaScriptablePluginObject.cc 内の invoke 関数には、一つずれエラー (Off-by-One error) により、重要な情報を取得される、サービス運用妨害 (クラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005312_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:icedtea-web"/>
    <sec:identifier>JVNDB-2012-005312</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005311:KDE &#12398; Konqueror &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005311_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005311_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005311_AD_1.html</id>
    <published>2012-11-13T14:38:59+09:00</published>
    <updated>2012-11-13T14:38:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KDE の Konqueror 内の khtml/rendering/render_replaced.cpp には、コンテキストメニューが表示されている際、解放済みメモリの使用 (Use-after-free) により、サービス運用妨害 (クラッシュ) 状態になる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005311_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kde:kde"/>
    <sec:identifier>JVNDB-2012-005311</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005310:KDE &#12398; Konqueror &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (NULL &#12509;&#12452;&#12531;&#12479;&#12487;&#12522;&#12501;&#12449;&#12524;&#12531;&#12473;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005310_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005310_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005310_AD_1.html</id>
    <published>2012-11-13T14:38:18+09:00</published>
    <updated>2012-11-13T14:38:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KDE の Konqueror 内の rendering/render_replaced.cpp には、サービス運用妨害 (NULL ポインタデリファレンス) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005310_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kde:kde"/>
    <sec:identifier>JVNDB-2012-005310</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005309:KDE &#12398; Konqueror &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005309_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005309_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005309_AD_1.html</id>
    <published>2012-11-13T14:36:48+09:00</published>
    <updated>2012-11-13T14:36:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
KDE の Konqueror 内の khtml/imload/scaledimageplane.h には、サービス運用妨害 (クラッシュ) 状態となる、およびメモリを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005309_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kde:kde"/>
    <sec:identifier>JVNDB-2012-005309</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005308:libproxy &#12398; lib/pac.c &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005308_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005308_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005308_AD_1.html</id>
    <published>2012-11-13T14:13:38+09:00</published>
    <updated>2012-11-13T14:13:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libproxy の lib/pac.c 内の px_pac_reload 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4504 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005308_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libproxy_project:libproxy"/>
    <sec:identifier>JVNDB-2012-005308</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005307:libproxy &#12398; url.cpp &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005307_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005307_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005307_AD_1.html</id>
    <published>2012-11-13T14:11:58+09:00</published>
    <updated>2012-11-13T14:11:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libproxy の url.cpp 内の url::get_pac 関数には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005307_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libproxy_project:libproxy"/>
    <sec:identifier>JVNDB-2012-005307</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005306:INN &#12398; nnrpd &#12395;&#12362;&#12369;&#12427;&#26263;&#21495;&#21270;&#12373;&#12428;&#12383;&#12475;&#12483;&#12471;&#12519;&#12531;&#12395;&#12467;&#12510;&#12531;&#12489;&#12434;&#25407;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005306_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005306_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005306_AD_1.html</id>
    <published>2012-11-13T11:39:04+09:00</published>
    <updated>2012-11-13T11:39:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
INN の nnrpd 内の STARTTLS の実装は、I/O バッファリングを適切に制限しないため、暗号化されたセッションにコマンドを挿入される脆弱性が存在します。  本脆弱性は、CVE-2011-0411 と類似した脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005306_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:inn"/>
    <sec:identifier>JVNDB-2012-005306</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005305:Advanced Productivity Software DTE Axiom &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005305_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005305_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005305_AD_1.html</id>
    <published>2012-11-13T11:34:16+09:00</published>
    <updated>2012-11-13T11:34:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Advanced Productivity Software DTE Axiom は、登録 (registration) ID を確認しないため、認証を回避され、ユーザ、顧客、およびプロジェクトに関するデータを読まれる、または変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005305_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:advance_productivity_software:dte_axiom"/>
    <sec:identifier>JVNDB-2012-005305</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005304:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005304_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005304_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005304_AD_1.html</id>
    <published>2012-11-13T10:57:31+09:00</published>
    <updated>2012-11-13T10:57:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005304_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005304</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005303:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005303_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005303_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005303_AD_1.html</id>
    <published>2012-11-13T10:56:45+09:00</published>
    <updated>2012-11-13T10:56:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005303_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005303</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005302:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005302_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005302_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005302_AD_1.html</id>
    <published>2012-11-13T10:54:23+09:00</published>
    <updated>2012-11-13T10:54:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005302_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005302</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005301:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005301_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005301_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005301_AD_1.html</id>
    <published>2012-11-13T10:51:02+09:00</published>
    <updated>2012-11-13T10:51:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005301_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005301</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005300:Apple QuickTime &#12398; ActiveX &#12467;&#12531;&#12488;&#12525;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005300_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005300_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005300_AD_1.html</id>
    <published>2012-11-13T10:48:38+09:00</published>
    <updated>2012-11-13T10:48:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime の ActiveX コントロール内の Clear メソッドには、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005300_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005300</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005299:Apple QuickTime &#12398;&#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005299_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005299_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005299_AD_1.html</id>
    <published>2012-11-13T10:44:43+09:00</published>
    <updated>2012-11-13T10:44:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime のプラグインには、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005299_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005299</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005298:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005298_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005298_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005298_AD_1.html</id>
    <published>2012-11-13T10:41:07+09:00</published>
    <updated>2012-11-13T10:41:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005298_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005298</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005297:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005297_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005297_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005297_AD_1.html</id>
    <published>2012-11-13T10:36:42+09:00</published>
    <updated>2012-11-13T10:36:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005297_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005297</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005296:Apple QuickTime &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005296_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005296_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005296_AD_1.html</id>
    <published>2012-11-13T10:34:11+09:00</published>
    <updated>2012-11-13T10:34:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple QuickTime には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005296_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime"/>
    <sec:identifier>JVNDB-2012-005296</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5673:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Unspecified vulnerability in Adobe Flash Player bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5673_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5673_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5673_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 has unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5673_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player:11.1"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5673</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5287:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5287_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5287_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5287_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than other Flash Player buffer overflow CVEs listed in APSB12-22.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5287_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player:11.1"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5287</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5286:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5286_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5286_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5286_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than other Flash Player buffer overflow CVEs listed in APSB12-22.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5286_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player:11.1"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5286</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5285:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5285_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5285_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5285_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than other Flash Player buffer overflow CVEs listed in APSB12-22.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5285_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player:11.1"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5285</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1813:eoscada: eosfailoverservice.exe in C3-ilex EOScada before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1813_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1813_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1813_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
eosfailoverservice.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service by sending a large amount of data to TCP port 12000.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1813_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada:11.0.19.1 and previous versions"/>
    <sec:identifier>CVE-2012-1813</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1812:eoscada: eosfailoverservice.exe in C3-ilex EOScada before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1812_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1812_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1812_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
eosfailoverservice.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to obtain sensitive cleartext information via a session on TCP port 12000.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1812_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada:11.0.19.1 and previous versions"/>
    <sec:identifier>CVE-2012-1812</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1811:eoscada: EOSDataServer.exe in C3-ilex EOScada before 11.0.19...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1811_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1811_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1811_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
EOSDataServer.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service by sending a large amount of data to TCP port 24006.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1811_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada:11.0.19.1 and previous versions"/>
    <sec:identifier>CVE-2012-1811</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1810:eoscada: EOSCoreScada.exe in C3-ilex EOScada before 11.0.19....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1810_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1810_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1810_AD_1.html</id>
    <published>2012-11-13T00:00:00+09:00</published>
    <updated>2012-11-13T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
EOSCoreScada.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service (daemon restart) by sending data to TCP port (1) 5050 or (2) 24004.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1810_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c3-ilex:eoscada:11.0.19.1 and previous versions"/>
    <sec:identifier>CVE-2012-1810</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5827:joomla!: Joomla! 2.5.x before 2.5.8 allows remote attackers ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5827_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5827_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5827_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Joomla! 2.5.x before 2.5.8 allows remote attackers to conduct clickjacking attacks via unspecified vectors involving &quot;Inadequate protection.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5827_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:2.5.0"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.1"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.2"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.3"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.4"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.5"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.6"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.7"/>
    <sec:identifier>CVE-2012-5827</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5482:essex, folsom, glance: The v2 API in OpenStack Glance Grizzly, Folsom (201...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5482_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5482_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5482_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5482_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex:2012.1"/>
    <category term="cpe:/a:openstack:folsom:2012.2"/>
    <category term="cpe:/a:openstack:glance:grizzly"/>
    <sec:identifier>CVE-2012-5482</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4884:rt: Argument injection vulnerability in Request Tracker...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4884_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4884_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4884_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Argument injection vulnerability in Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attackers to create arbitrary files via unspecified vectors related to the GnuPG client.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4884_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt:3.8.0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:preflight1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.12"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:preflight0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc7"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc8"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.7"/>
    <category term="cpe:/a:bestpractical:rt:4.0.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc2"/>
    <sec:identifier>CVE-2012-4884</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4734:rt: Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4734_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4734_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4734_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attackers to conduct a &quot;confused deputy&quot; attack to bypass the CSRF warning protection mechanism and cause victims to &quot;modify arbitrary state&quot; via unknown vectors related to a crafted link.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4734_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt:3.8.0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:preflight1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.12"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:preflight0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc7"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc8"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc2"/>
    <sec:identifier>CVE-2012-4734</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4732:rt: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4732_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4732_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4732_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in Request Tracker (RT) 3.8.12 and other versions before 3.8.15, and 4.0.6 and other versions before 4.0.8, allows remote attackers to hijack the authentication of users for requests that toggle ticket bookmarks.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4732_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt:3.8.12"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc2"/>
    <sec:identifier>CVE-2012-4732</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4731:rtfm: FAQ manager for Request Tracker (RTFM) before 2.4.5...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4731_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4731_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4731_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
FAQ manager for Request Tracker (RTFM) before 2.4.5 does not properly check user rights, which allows remote authenticated users to create arbitrary articles in arbitrary classes via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4731_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rtfm:2.2.0"/>
    <category term="cpe:/a:bestpractical:rtfm:2.2.1"/>
    <category term="cpe:/a:bestpractical:rtfm:2.2.2"/>
    <category term="cpe:/a:bestpractical:rtfm:2.4.0"/>
    <category term="cpe:/a:bestpractical:rtfm:2.4.1"/>
    <category term="cpe:/a:bestpractical:rtfm:2.4.2"/>
    <category term="cpe:/a:bestpractical:rtfm:2.4.3 and previous versions"/>
    <sec:identifier>CVE-2012-4731</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4730:rt: Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4730_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4730_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4730_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote authenticated users with ModifySelf or AdminUser privileges to inject arbitrary email headers and conduct phishing attacks or obtain sensitive information via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4730_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bestpractical:rt:3.8.0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:preflight1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10"/>
    <category term="cpe:/a:bestpractical:rt:3.8.10:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.11:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.12"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.13:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.14:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:preflight0"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.1:rc5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.4:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.5"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6"/>
    <category term="cpe:/a:bestpractical:rt:3.8.6:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7"/>
    <category term="cpe:/a:bestpractical:rt:3.8.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc3"/>
    <category term="cpe:/a:bestpractical:rt:3.8.8:rc4"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc1"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc2"/>
    <category term="cpe:/a:bestpractical:rt:3.8.9:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc7"/>
    <category term="cpe:/a:bestpractical:rt:4.0.0:rc8"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.1:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.2:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.3:rc2"/>
    <category term="cpe:/a:bestpractical:rt:4.0.4"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5"/>
    <category term="cpe:/a:bestpractical:rt:4.0.5:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.6"/>
    <category term="cpe:/a:bestpractical:rt:4.0.7:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc1"/>
    <category term="cpe:/a:bestpractical:rt:4.0.8:rc2"/>
    <sec:identifier>CVE-2012-4730</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4573:essex, folsom, glance: The v1 API in OpenStack Glance Grizzly, Folsom (201...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4573_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4573_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4573_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The v1 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request, a different vulnerability than CVE-2012-5482.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4573_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:essex:2012.1"/>
    <category term="cpe:/a:openstack:folsom:2012.2"/>
    <category term="cpe:/a:openstack:glance:grizzly"/>
    <sec:identifier>CVE-2012-4573</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4564:libtiff: ppm2tiff does not check the return value of the TIF...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4564_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4564_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4564_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4564_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libtiff:libtiff:-"/>
    <sec:identifier>CVE-2012-4564</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4554:drupal: The OpenID module in Drupal 7.x before 7.16 allows ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4554_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4554_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4554_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4554_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:7.0"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha1"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha2"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha3"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha4"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha5"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha6"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha7"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta1"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta2"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta3"/>
    <category term="cpe:/a:drupal:drupal:7.0:dev"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc1"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc2"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc3"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc4"/>
    <category term="cpe:/a:drupal:drupal:7.1"/>
    <category term="cpe:/a:drupal:drupal:7.10"/>
    <category term="cpe:/a:drupal:drupal:7.11"/>
    <category term="cpe:/a:drupal:drupal:7.12"/>
    <category term="cpe:/a:drupal:drupal:7.13"/>
    <category term="cpe:/a:drupal:drupal:7.14"/>
    <category term="cpe:/a:drupal:drupal:7.15"/>
    <category term="cpe:/a:drupal:drupal:7.2"/>
    <category term="cpe:/a:drupal:drupal:7.3"/>
    <category term="cpe:/a:drupal:drupal:7.4"/>
    <category term="cpe:/a:drupal:drupal:7.5"/>
    <category term="cpe:/a:drupal:drupal:7.6"/>
    <category term="cpe:/a:drupal:drupal:7.7"/>
    <category term="cpe:/a:drupal:drupal:7.8"/>
    <category term="cpe:/a:drupal:drupal:7.9"/>
    <sec:identifier>CVE-2012-4554</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4553:drupal: Drupal 7.x before 7.16 allows remote attackers to o...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4553_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4553_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4553_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Drupal 7.x before 7.16 allows remote attackers to obtain sensitive information and possibly re-install Drupal and execute arbitrary PHP code via an external database server, related to &quot;transient conditions.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4553_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:7.0"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha1"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha2"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha3"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha4"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha5"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha6"/>
    <category term="cpe:/a:drupal:drupal:7.0:alpha7"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta1"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta2"/>
    <category term="cpe:/a:drupal:drupal:7.0:beta3"/>
    <category term="cpe:/a:drupal:drupal:7.0:dev"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc1"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc2"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc3"/>
    <category term="cpe:/a:drupal:drupal:7.0:rc4"/>
    <category term="cpe:/a:drupal:drupal:7.1"/>
    <category term="cpe:/a:drupal:drupal:7.10"/>
    <category term="cpe:/a:drupal:drupal:7.11"/>
    <category term="cpe:/a:drupal:drupal:7.12"/>
    <category term="cpe:/a:drupal:drupal:7.13"/>
    <category term="cpe:/a:drupal:drupal:7.14"/>
    <category term="cpe:/a:drupal:drupal:7.15"/>
    <category term="cpe:/a:drupal:drupal:7.2"/>
    <category term="cpe:/a:drupal:drupal:7.3"/>
    <category term="cpe:/a:drupal:drupal:7.4"/>
    <category term="cpe:/a:drupal:drupal:7.5"/>
    <category term="cpe:/a:drupal:drupal:7.6"/>
    <category term="cpe:/a:drupal:drupal:7.7"/>
    <category term="cpe:/a:drupal:drupal:7.8"/>
    <category term="cpe:/a:drupal:drupal:7.9"/>
    <sec:identifier>CVE-2012-4553</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4548:cgit: Argument injection vulnerability in syntax-highligh...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4548_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4548_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4548_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute arbitrary commands via the --plug-in argument to the highlight command.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4548_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lars_hjemli:cgit:0.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.4"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.5"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.1.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.4"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.5"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.3 and previous versions"/>
    <sec:identifier>CVE-2012-4548</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4540:icedtea-web: Off-by-one error in the invoke function in IcedTeaS...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4540_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4540_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4540_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in IcedTea-Web 1.1.x before 1.1.7, 1.2.x before 1.2.2, and 1.3.x before 1.3.1 allows remote attackers to obtain sensitive information, cause a denial of service (crash), or possibly execute arbitrary code via a crafted webpage that triggers a heap-based buffer overflow, related to an error message and a &quot;triggering event attached to applet.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4540_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:icedtea-web:1.1"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.1"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.2"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.3"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.4"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.5"/>
    <category term="cpe:/a:redhat:icedtea-web:1.1.6"/>
    <category term="cpe:/a:redhat:icedtea-web:1.2"/>
    <category term="cpe:/a:redhat:icedtea-web:1.2.1"/>
    <category term="cpe:/a:redhat:icedtea-web:1.3"/>
    <sec:identifier>CVE-2012-4540</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4515:kde: Use-after-free vulnerability in khtml/rendering/ren...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4515_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4515_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4515_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by accessing an iframe when it is being updated.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4515_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:kde:kde:4.7.3"/>
    <sec:identifier>CVE-2012-4515</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4514:kde: rendering/render_replaced.cpp in Konqueror in KDE b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4514_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4514_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4514_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted web page, related to &quot;trying to reuse a frame with a null part.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4514_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:kde:kde:1.0"/>
    <category term="cpe:/o:kde:kde:1.1"/>
    <category term="cpe:/o:kde:kde:1.1.1"/>
    <category term="cpe:/o:kde:kde:1.1.2"/>
    <category term="cpe:/o:kde:kde:1.2"/>
    <category term="cpe:/o:kde:kde:1.x"/>
    <category term="cpe:/o:kde:kde:2.0"/>
    <category term="cpe:/o:kde:kde:2.0.1"/>
    <category term="cpe:/o:kde:kde:2.0_beta"/>
    <category term="cpe:/o:kde:kde:2.1"/>
    <category term="cpe:/o:kde:kde:2.1.1"/>
    <category term="cpe:/o:kde:kde:2.1.2"/>
    <category term="cpe:/o:kde:kde:2.1_beta1"/>
    <category term="cpe:/o:kde:kde:2.1_beta2"/>
    <category term="cpe:/o:kde:kde:2.2"/>
    <category term="cpe:/o:kde:kde:2.2.1"/>
    <category term="cpe:/o:kde:kde:2.2.2"/>
    <category term="cpe:/o:kde:kde:2.2_beta1"/>
    <category term="cpe:/o:kde:kde:3.0"/>
    <category term="cpe:/o:kde:kde:3.0.1"/>
    <category term="cpe:/o:kde:kde:3.0.2"/>
    <category term="cpe:/o:kde:kde:3.0.3"/>
    <category term="cpe:/o:kde:kde:3.0.3a"/>
    <category term="cpe:/o:kde:kde:3.0.4"/>
    <category term="cpe:/o:kde:kde:3.0.5"/>
    <category term="cpe:/o:kde:kde:3.0.5a"/>
    <category term="cpe:/o:kde:kde:3.0.5b"/>
    <category term="cpe:/o:kde:kde:3.0_beta_1"/>
    <category term="cpe:/o:kde:kde:3.0_beta_2"/>
    <category term="cpe:/o:kde:kde:3.1"/>
    <category term="cpe:/o:kde:kde:3.1.0"/>
    <category term="cpe:/o:kde:kde:3.1.1"/>
    <category term="cpe:/o:kde:kde:3.1.1a"/>
    <category term="cpe:/o:kde:kde:3.1.2"/>
    <category term="cpe:/o:kde:kde:3.1.3"/>
    <category term="cpe:/o:kde:kde:3.1.4"/>
    <category term="cpe:/o:kde:kde:3.1.5"/>
    <category term="cpe:/o:kde:kde:3.1_alpha1"/>
    <category term="cpe:/o:kde:kde:3.1_beta1"/>
    <category term="cpe:/o:kde:kde:3.1_beta2"/>
    <category term="cpe:/o:kde:kde:3.2"/>
    <category term="cpe:/o:kde:kde:3.2.0"/>
    <category term="cpe:/o:kde:kde:3.2.0_beta1"/>
    <category term="cpe:/o:kde:kde:3.2.1"/>
    <category term="cpe:/o:kde:kde:3.2.2"/>
    <category term="cpe:/o:kde:kde:3.2.3"/>
    <category term="cpe:/o:kde:kde:3.2.x"/>
    <category term="cpe:/o:kde:kde:3.3"/>
    <category term="cpe:/o:kde:kde:3.3.0"/>
    <category term="cpe:/o:kde:kde:3.3.1"/>
    <category term="cpe:/o:kde:kde:3.3.2"/>
    <category term="cpe:/o:kde:kde:3.3.x"/>
    <category term="cpe:/o:kde:kde:3.4"/>
    <category term="cpe:/o:kde:kde:3.4.0"/>
    <category term="cpe:/o:kde:kde:3.4.1"/>
    <category term="cpe:/o:kde:kde:3.4.2"/>
    <category term="cpe:/o:kde:kde:3.4.3"/>
    <category term="cpe:/o:kde:kde:3.5"/>
    <category term="cpe:/o:kde:kde:3.5.0"/>
    <category term="cpe:/o:kde:kde:3.5.1"/>
    <category term="cpe:/o:kde:kde:3.5.10"/>
    <category term="cpe:/o:kde:kde:3.5.2"/>
    <category term="cpe:/o:kde:kde:3.5.3"/>
    <category term="cpe:/o:kde:kde:3.5.4"/>
    <category term="cpe:/o:kde:kde:3.5.5"/>
    <category term="cpe:/o:kde:kde:3.5.6"/>
    <category term="cpe:/o:kde:kde:3.5.7"/>
    <category term="cpe:/o:kde:kde:3.5.8"/>
    <category term="cpe:/o:kde:kde:3.5.9"/>
    <category term="cpe:/o:kde:kde:4.0.0"/>
    <category term="cpe:/o:kde:kde:4.0.1"/>
    <category term="cpe:/o:kde:kde:4.0.2"/>
    <category term="cpe:/o:kde:kde:4.0.3"/>
    <category term="cpe:/o:kde:kde:4.7.3"/>
    <category term="cpe:/o:kde:kde:4.9.0"/>
    <category term="cpe:/o:kde:kde:4.9.1"/>
    <category term="cpe:/o:kde:kde:4.9.2 and previous versions"/>
    <sec:identifier>CVE-2012-4514</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4513:kde: khtml/imload/scaledimageplane.h in Konqueror in KDE...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4513_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4513_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4513_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via large canvas dimensions, which leads to an unexpected sign extension and a heap-based buffer over-read.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4513_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:kde:kde:4.7.3"/>
    <sec:identifier>CVE-2012-4513</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4505:libproxy: Heap-based buffer overflow in the px_pac_reload fun...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4505_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4505_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4505_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the px_pac_reload function in lib/pac.c in libproxy 0.2.x and 0.3.x allows remote servers to have an unspecified impact via a crafted Content-Length size in an HTTP response header for a proxy.pac file request, a different vulnerability than CVE-2012-4504.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4505_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libproxy_project:libproxy:0.2.3"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.3.0"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.3.1"/>
    <sec:identifier>CVE-2012-4505</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4504:libproxy: Stack-based buffer overflow in the url::get_pac fun...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4504_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4504_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4504_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the url::get_pac function in url.cpp in libproxy 0.4.x before 0.4.9 allows remote servers to have an unspecified impact via a large proxy.pac file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4504_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.0"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.1"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.2"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.3"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.5"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.6"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.7"/>
    <category term="cpe:/a:libproxy_project:libproxy:0.4.8"/>
    <sec:identifier>CVE-2012-4504</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3523:inn: The STARTTLS implementation in nnrpd in INN before ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3523_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3523_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3523_AD_1.html</id>
    <published>2012-11-11T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cleartext command that is processed after TLS is in place, related to a &quot;plaintext command injection&quot; attack, a similar issue to CVE-2011-0411.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3523_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:inn:1.4"/>
    <category term="cpe:/a:isc:inn:1.4sec"/>
    <category term="cpe:/a:isc:inn:1.4sec2"/>
    <category term="cpe:/a:isc:inn:1.4unoff3"/>
    <category term="cpe:/a:isc:inn:1.4unoff4"/>
    <category term="cpe:/a:isc:inn:1.5"/>
    <category term="cpe:/a:isc:inn:1.5.1"/>
    <category term="cpe:/a:isc:inn:1.7"/>
    <category term="cpe:/a:isc:inn:1.7.2"/>
    <category term="cpe:/a:isc:inn:2.0"/>
    <category term="cpe:/a:isc:inn:2.1"/>
    <category term="cpe:/a:isc:inn:2.2"/>
    <category term="cpe:/a:isc:inn:2.2.1"/>
    <category term="cpe:/a:isc:inn:2.2.2"/>
    <category term="cpe:/a:isc:inn:2.2.3"/>
    <category term="cpe:/a:isc:inn:2.4.0"/>
    <category term="cpe:/a:isc:inn:2.5.2 and previous versions"/>
    <sec:identifier>CVE-2012-3523</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2455:dte_axiom: Advanced Productivity Software DTE Axiom before 12....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2455_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2455_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2455_AD_1.html</id>
    <published>2012-11-10T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attackers to bypass authentication and read or modify data about users, customers, and projects via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2455_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:advance_productivity_software:dte_axiom:12.3.2 and previous versions"/>
    <sec:identifier>CVE-2012-2455</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3758:quicktime: Buffer overflow in Apple QuickTime before 7.7.3 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3758_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3758_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3758_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted transform attribute in a text3GTrack element in a QuickTime TeXML file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3758_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3758</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3757:quicktime: Apple QuickTime before 7.7.3 allows remote attacker...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3757_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3757_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3757_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted PICT file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3757_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3757</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3756:quicktime: Buffer overflow in Apple QuickTime before 7.7.3 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3756_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3756_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3756_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted rnet box in an MP4 movie file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3756_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3756</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3755:quicktime: Buffer overflow in Apple QuickTime before 7.7.3 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3755_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3755_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3755_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Targa image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3755_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3755</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3754:quicktime: Use-after-free vulnerability in the Clear method in...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3754_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3754_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3754_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the Clear method in the ActiveX control in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3754_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3754</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3753:quicktime: Buffer overflow in the plugin in Apple QuickTime be...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3753_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3753_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3753_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MIME type.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3753_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3753</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3752:quicktime: Multiple buffer overflows in Apple QuickTime before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3752_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3752_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3752_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple buffer overflows in Apple QuickTime before 7.7.3 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted style element in a QuickTime TeXML file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3752_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3752</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3751:quicktime: Use-after-free vulnerability in the plugin in Apple...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3751_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3751_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3751_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with a crafted _qtactivex_ parameter in an OBJECT element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3751_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2012-3751</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-1374:quicktime: Buffer overflow in Apple QuickTime before 7.7.3 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1374_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1374_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1374_AD_1.html</id>
    <published>2012-11-09T00:00:00+09:00</published>
    <updated>2012-11-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted REGION record in a PICT file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-1374_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:quicktime:3.0"/>
    <category term="cpe:/a:apple:quicktime:4.1.2"/>
    <category term="cpe:/a:apple:quicktime:5.0"/>
    <category term="cpe:/a:apple:quicktime:5.0.1"/>
    <category term="cpe:/a:apple:quicktime:5.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.0"/>
    <category term="cpe:/a:apple:quicktime:6.0.1"/>
    <category term="cpe:/a:apple:quicktime:6.0.2"/>
    <category term="cpe:/a:apple:quicktime:6.1"/>
    <category term="cpe:/a:apple:quicktime:6.1.1"/>
    <category term="cpe:/a:apple:quicktime:6.2.0"/>
    <category term="cpe:/a:apple:quicktime:6.3.0"/>
    <category term="cpe:/a:apple:quicktime:6.4.0"/>
    <category term="cpe:/a:apple:quicktime:6.5"/>
    <category term="cpe:/a:apple:quicktime:6.5.0"/>
    <category term="cpe:/a:apple:quicktime:6.5.1"/>
    <category term="cpe:/a:apple:quicktime:6.5.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.0"/>
    <category term="cpe:/a:apple:quicktime:7.0.1"/>
    <category term="cpe:/a:apple:quicktime:7.0.2"/>
    <category term="cpe:/a:apple:quicktime:7.0.3"/>
    <category term="cpe:/a:apple:quicktime:7.0.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.0"/>
    <category term="cpe:/a:apple:quicktime:7.1.1"/>
    <category term="cpe:/a:apple:quicktime:7.1.2"/>
    <category term="cpe:/a:apple:quicktime:7.1.3"/>
    <category term="cpe:/a:apple:quicktime:7.1.4"/>
    <category term="cpe:/a:apple:quicktime:7.1.5"/>
    <category term="cpe:/a:apple:quicktime:7.1.6"/>
    <category term="cpe:/a:apple:quicktime:7.2.0"/>
    <category term="cpe:/a:apple:quicktime:7.2.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.0"/>
    <category term="cpe:/a:apple:quicktime:7.3.1"/>
    <category term="cpe:/a:apple:quicktime:7.3.1.70"/>
    <category term="cpe:/a:apple:quicktime:7.4.0"/>
    <category term="cpe:/a:apple:quicktime:7.4.1"/>
    <category term="cpe:/a:apple:quicktime:7.4.5"/>
    <category term="cpe:/a:apple:quicktime:7.5.0"/>
    <category term="cpe:/a:apple:quicktime:7.5.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.0"/>
    <category term="cpe:/a:apple:quicktime:7.6.1"/>
    <category term="cpe:/a:apple:quicktime:7.6.2"/>
    <category term="cpe:/a:apple:quicktime:7.6.5"/>
    <category term="cpe:/a:apple:quicktime:7.6.6"/>
    <category term="cpe:/a:apple:quicktime:7.6.7"/>
    <category term="cpe:/a:apple:quicktime:7.6.8"/>
    <category term="cpe:/a:apple:quicktime:7.6.9"/>
    <category term="cpe:/a:apple:quicktime:7.7.0"/>
    <category term="cpe:/a:apple:quicktime:7.7.1"/>
    <category term="cpe:/a:apple:quicktime:7.7.2 and previous versions"/>
    <sec:identifier>CVE-2011-1374</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005295:IBM TFIM &#12362;&#12424;&#12403; TFIMBG &#12395;&#12362;&#12369;&#12427;&#12475;&#12461;&#12517;&#12522;&#12486;&#12451;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005295_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005295_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005295_AD_1.html</id>
    <published>2012-11-09T12:19:54+09:00</published>
    <updated>2012-11-09T12:19:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM Tivoli Federated Identity Manager (TFIM) および Tivoli Federated Identity Manager Business Gateway (TFIMBG) の管理コンソール内の Java サーブレットは、全てのリソースのダウンロードにおいて認証を要求しないため、J2EE のセキュリティ制約を回避される、および (1) フェデレーションメタデータまたは (2) Web プラグインのコンフィグレーションテンプレートに関連する情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005295_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway"/>
    <sec:identifier>JVNDB-2012-005295</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005294:Cisco Secure Access Control System &#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005294_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005294_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005294_AD_1.html</id>
    <published>2012-11-09T12:18:02+09:00</published>
    <updated>2012-11-09T12:18:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Secure Access Control System (ACS) は、TACACS+ に関連した特定の設定で LDAP が使用している場合、パスワードを適切に検証しないため、認証を回避される脆弱性が存在します。  本問題は、Bug ID CSCuc65634 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005294_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:secure_access_control_system"/>
    <sec:identifier>JVNDB-2012-005294</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005293:HP Performance Insight &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005293_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005293_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005293_AD_1.html</id>
    <published>2012-11-09T12:16:24+09:00</published>
    <updated>2012-11-09T12:16:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Performance Insight には、Sybase を使用している場合、重要な情報を取得される、データを改ざんされる、またはサービス運用妨害 (DoS) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-3269 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005293_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:performance_insight"/>
    <sec:identifier>JVNDB-2012-005293</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005292:HP Performance Insight &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005292_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005292_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005292_AD_1.html</id>
    <published>2012-11-09T12:15:39+09:00</published>
    <updated>2012-11-09T12:15:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP Performance Insight には、Sybase を使用している場合、重要な情報を取得される、データを改ざんされる、またはサービス運用妨害 (DoS) 状態となる脆弱性が存在します。  本脆弱性は、CVE-2012-3270 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005292_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:performance_insight"/>
    <sec:identifier>JVNDB-2012-005292</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005291:Sophos Antivirus &#12395;&#35079;&#25968;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005291_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005291_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005291_AD_1.html</id>
    <published>2012-11-09T11:06:18+09:00</published>
    <updated>2012-11-09T11:06:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Sophos Antivirus には、複数の脆弱性が存在します。  Sophos Antivirus には、整数オーバーフロー、ASLR の回避、Internet Explorer 保護モードの無効化、クロスサイトスクリプティング、メモリ破壊、権限昇格、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005291_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sophos:sophos_anti-virus"/>
    <sec:identifier>JVNDB-2012-005291</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005290:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Google V8 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005290_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005290_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005290_AD_1.html</id>
    <published>2012-11-08T14:56:48+09:00</published>
    <updated>2012-11-08T14:56:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される Google V8 は、書き込み操作を適切に実行しないため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005290_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:google:v8"/>
    <sec:identifier>JVNDB-2012-005290</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005289:Google Chrome &#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005289_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005289_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005289_AD_1.html</id>
    <published>2012-11-08T14:56:04+09:00</published>
    <updated>2012-11-08T14:56:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、整数オーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005289_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005289</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005288:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005288_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005288_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005288_AD_1.html</id>
    <published>2012-11-08T14:55:33+09:00</published>
    <updated>2012-11-08T14:55:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、プレースホルダのプラグイン処理に関連して、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005288_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005288</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005287:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005287_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005287_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005287_AD_1.html</id>
    <published>2012-11-08T14:54:37+09:00</published>
    <updated>2012-11-08T14:54:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、拡張タブに関連して、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005287_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005287</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005286:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12513;&#12514;&#12522;&#30772;&#25613;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005286_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005286_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005286_AD_1.html</id>
    <published>2012-11-08T14:52:42+09:00</published>
    <updated>2012-11-08T14:52:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、テクスチャを適切に処理しないため、サービス運用妨害 (メモリ破損) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005286_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005286</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005285:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Skia &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (out-of-bounds read) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005285_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005285_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005285_AD_1.html</id>
    <published>2012-11-08T14:51:19+09:00</published>
    <updated>2012-11-08T14:51:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される Skia には、サービス運用妨害 (out-of-bounds read) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005285_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:google:skia"/>
    <sec:identifier>JVNDB-2012-005285</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005284:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005284_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005284_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005284_AD_1.html</id>
    <published>2012-11-08T14:50:05+09:00</published>
    <updated>2012-11-08T14:50:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、入力の処理中に不特定の変数のキャストを適切に実行しないため、サービス運用妨害 (DoS) 状態となる、またはその他の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005284_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005284</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005283:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005283_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005283_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005283_AD_1.html</id>
    <published>2012-11-08T14:48:54+09:00</published>
    <updated>2012-11-08T14:48:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、解放済みメモリの使用 (Use-after-free) により、ビデオレイアウトの処理に不備があるため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005283_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005283</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005282:64-bit Linux &#12503;&#12521;&#12483;&#12488;&#12501;&#12457;&#12540;&#12512;&#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Google V8 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005282_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005282_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005282_AD_1.html</id>
    <published>2012-11-08T14:48:06+09:00</published>
    <updated>2012-11-08T14:48:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
64-bit Linux プラットフォーム上で稼働する Google Chrome で使用される Google V8 には、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005282_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:google:v8"/>
    <sec:identifier>JVNDB-2012-005282</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005281:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Pepper &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005281_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005281_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005281_AD_1.html</id>
    <published>2012-11-08T14:46:54+09:00</published>
    <updated>2012-11-08T14:46:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される Pepper には、競合状態により、バッファの処理に不備があるため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005281_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005281</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005280:Mac OS X &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005280_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005280_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005280_AD_1.html</id>
    <published>2012-11-08T14:45:48+09:00</published>
    <updated>2012-11-08T14:45:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で稼働する Google Chrome は、GPU コマンドバッファの処理中に 整数値を適切に検証しないため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005280_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005280</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005279:Google Chrome &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005279_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005279_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005279_AD_1.html</id>
    <published>2012-11-08T14:45:06+09:00</published>
    <updated>2012-11-08T14:45:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、IMG 要素のコンテキスト内の SVG サブソースのロードを適切に制限しないため、不特定の影響およびリモート攻撃を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005279_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005279</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005278:Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005278_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005278_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005278_AD_1.html</id>
    <published>2012-11-08T14:40:19+09:00</published>
    <updated>2012-11-08T14:40:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、解放済みメモリの使用 (Use-after-free) により、SVG フィルタに関する処理に不備があるため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005278_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005278</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005277:Mac OS X &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Google Chrome &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005277_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005277_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005277_AD_1.html</id>
    <published>2012-11-08T14:39:29+09:00</published>
    <updated>2012-11-08T14:39:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で稼働する Google Chrome は、グラフィックドライバへの不正な書き込み行為を適切に軽減しないため、サービス運用妨害 (DoS) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005277_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-005277</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005276:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005276_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005276_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005276_AD_1.html</id>
    <published>2012-11-08T14:28:05+09:00</published>
    <updated>2012-11-08T14:28:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-5274、CVE-2012-5275、CVE-2012-5276、および CVE-2012-5277 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005276_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005276</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005275:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005275_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005275_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005275_AD_1.html</id>
    <published>2012-11-08T14:26:31+09:00</published>
    <updated>2012-11-08T14:26:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005275_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005275</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005274:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005274_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005274_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005274_AD_1.html</id>
    <published>2012-11-08T14:22:56+09:00</published>
    <updated>2012-11-08T14:22:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、アクセス制限を回避される、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005274_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005274</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005273:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005273_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005273_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005273_AD_1.html</id>
    <published>2012-11-08T14:20:25+09:00</published>
    <updated>2012-11-08T14:20:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-5274、CVE-2012-5275、CVE-2012-5276、および CVE-2012-5280 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005273_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005273</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005272:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005272_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005272_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005272_AD_1.html</id>
    <published>2012-11-08T14:19:36+09:00</published>
    <updated>2012-11-08T14:19:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-5274、CVE-2012-5275、CVE-2012-5277、および CVE-2012-5280 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005272_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005272</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005271:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005271_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005271_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005271_AD_1.html</id>
    <published>2012-11-08T14:19:01+09:00</published>
    <updated>2012-11-08T14:19:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-5274、CVE-2012-5276、CVE-2012-5277、および CVE-2012-5280 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005271_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005271</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005270:Adobe Flash Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005270_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005270_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005270_AD_1.html</id>
    <published>2012-11-08T14:18:25+09:00</published>
    <updated>2012-11-08T14:18:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-5275、CVE-2012-5276、CVE-2012-5277、および CVE-2012-5280 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005270_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:adobe_air_sdk"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-005270</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5171:bezip: Directory traversal vulnerability in Be Graph BeZIP...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5171_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5171_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5171_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in Be Graph BeZIP before 3.10 allows remote attackers to create or overwrite arbitrary files via a crafted archive file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5171_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:be-graph:bezip:3.00"/>
    <category term="cpe:/a:be-graph:bezip:3.02"/>
    <category term="cpe:/a:be-graph:bezip:3.03"/>
    <category term="cpe:/a:be-graph:bezip:3.04 and previous versions"/>
    <sec:identifier>CVE-2012-5171</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4023:pebble: CRLF injection vulnerability in Pebble before 2.6.4...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4023_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4023_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4023_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CRLF injection vulnerability in Pebble before 2.6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4023_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simon_brown:pebble:1.0"/>
    <category term="cpe:/a:simon_brown:pebble:1.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.3"/>
    <category term="cpe:/a:simon_brown:pebble:1.4"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.5"/>
    <category term="cpe:/a:simon_brown:pebble:1.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.6:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.7"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.7:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.8"/>
    <category term="cpe:/a:simon_brown:pebble:1.9"/>
    <category term="cpe:/a:simon_brown:pebble:2.0"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m3"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.4"/>
    <category term="cpe:/a:simon_brown:pebble:2.4:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.3 and previous versions"/>
    <category term="cpe:/a:simon_brown:pebble:2.6:m1"/>
    <sec:identifier>CVE-2012-4023</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4022:pebble: Pebble before 2.6.4 allows remote attackers to trig...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4022_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4022_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4022_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Pebble before 2.6.4 allows remote attackers to trigger loss of blog-entry viewability via a crafted comment.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4022_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simon_brown:pebble:1.0"/>
    <category term="cpe:/a:simon_brown:pebble:1.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.3"/>
    <category term="cpe:/a:simon_brown:pebble:1.4"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.5"/>
    <category term="cpe:/a:simon_brown:pebble:1.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.6:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.7"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.7:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.8"/>
    <category term="cpe:/a:simon_brown:pebble:1.9"/>
    <category term="cpe:/a:simon_brown:pebble:2.0"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m3"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.4"/>
    <category term="cpe:/a:simon_brown:pebble:2.4:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.3 and previous versions"/>
    <category term="cpe:/a:simon_brown:pebble:2.6:m1"/>
    <sec:identifier>CVE-2012-4022</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4021:kintai_kanri: MosP kintai kanri before 4.1.0 does not properly pe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4021_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4021_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4021_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
MosP kintai kanri before 4.1.0 does not properly perform authentication, which allows remote authenticated users to impersonate arbitrary user accounts, and consequently obtain sensitive information or modify settings, via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4021_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mosp:kintai_kanri:4.0.9 and previous versions"/>
    <sec:identifier>CVE-2012-4021</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4020:kintai_kanri: MosP kintai kanri before 4.1.0 does not enforce pri...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4020_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4020_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4020_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
MosP kintai kanri before 4.1.0 does not enforce privilege requirements, which allows remote authenticated users to read other users' information via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4020_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mosp:kintai_kanri:4.0.9 and previous versions"/>
    <sec:identifier>CVE-2012-4020</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3315:tivoli_federated_identity_manager, tivoli_federated_identity_manager_business_gat...: The Java servlets in the management console in IBM ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3315_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3315_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3315_AD_1.html</id>
    <published>2012-11-08T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Java servlets in the management console in IBM Tivoli Federated Identity Manager (TFIM) through 6.2.2 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) before 6.2.2 do not require authentication for all resource downloads, which allows remote attackers to bypass intended J2EE security constraints, and obtain sensitive information related to (1) federation metadata or (2) a web plugin configuration template, via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3315_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.1.1"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0.1"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0.2"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0.3"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0.8"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.0.9"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.1"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager:6.2.2 and previous versions"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.1.1"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.0"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.0.1"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.0.2"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.0.3"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.0.8"/>
    <category term="cpe:/a:ibm:tivoli_federated_identity_manager_business_gateway:6.2.1 and previous versions"/>
    <sec:identifier>CVE-2012-3315</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5424:secure_access_control_server: Cisco Secure Access Control System (ACS) 5.x before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5424_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5424_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5424_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP is used, does not properly validate passwords, which allows remote attackers to bypass authentication by sending a valid username and a crafted password string, aka Bug ID CSCuc65634.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5424_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:secure_access_control_server:5.0"/>
    <category term="cpe:/a:cisco:secure_access_control_server:5.1"/>
    <category term="cpe:/a:cisco:secure_access_control_server:5.2"/>
    <category term="cpe:/a:cisco:secure_access_control_server:5.3"/>
    <sec:identifier>CVE-2012-5424</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3270:performance_insight: Unspecified vulnerability in HP Performance Insight...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3270_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3270_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3270_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, a different vulnerability than CVE-2012-3269.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3270_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:performance_insight:5.31"/>
    <category term="cpe:/a:hp:performance_insight:5.40"/>
    <category term="cpe:/a:hp:performance_insight:5.41"/>
    <sec:identifier>CVE-2012-3270</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3269:performance_insight: Unspecified vulnerability in HP Performance Insight...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3269_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3269_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3269_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-08T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, a different vulnerability than CVE-2012-3270.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3269_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hp:performance_insight:5.31"/>
    <category term="cpe:/a:hp:performance_insight:5.40"/>
    <category term="cpe:/a:hp:performance_insight:5.41"/>
    <sec:identifier>CVE-2012-3269</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005269:VeriCentre &#12395; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005269_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005269_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005269_AD_1.html</id>
    <published>2012-11-07T18:12:29+09:00</published>
    <updated>2012-11-07T18:12:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VeriCentre には、SQL インジェクションの脆弱性が存在します。  VeriCentre のウェブ管理機能には、入力されたデータの処理に問題があり、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005269_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:verifone_vericentre_web_console"/>
    <sec:identifier>JVNDB-2012-005269</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005268:&#35079;&#25968;&#12398; Symantec &#35069;&#21697;&#12395;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005268_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005268_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005268_AD_1.html</id>
    <published>2012-11-07T17:41:42+09:00</published>
    <updated>2012-11-07T17:41:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec 製の複数のアンチウィルス製品には、CAB ファイルの処理に脆弱性が存在します。  Symantec 製の複数のアンチウィルス製品には、CAB ファイルの展開時に使用されるコンポーネントに脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005268_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:antivirus_scan_engine"/>
    <category term="cpe:/a:symantec:endpoint_protection"/>
    <sec:identifier>JVNDB-2012-005268</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005267:google-checkout-php-sample-code &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005267_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005267_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005267_AD_1.html</id>
    <published>2012-11-07T17:38:52+09:00</published>
    <updated>2012-11-07T17:38:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
google-checkout-php-sample-code は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005267_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:checkout-php"/>
    <sec:identifier>JVNDB-2012-005267</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005266:PayPal WPS ToolKit &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005266_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005266_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005266_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal WPS ToolKit は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005266_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:wps_toolkit"/>
    <sec:identifier>JVNDB-2012-005266</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005265:CiviCRM &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005265_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005265_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005265_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CiviCRM は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005265_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:civicrm:civicrm"/>
    <sec:identifier>JVNDB-2012-005265</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005264:Services_Twitter &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005264_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005264_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005264_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Services_Twitter は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005264_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:php_group:services_twitter"/>
    <sec:identifier>JVNDB-2012-005264</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005263:Moneris eSelectPlus &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005263_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005263_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005263_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Moneris eSelectPlus は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005263_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moneris:eselect_plus"/>
    <sec:identifier>JVNDB-2012-005263</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005262:Magento &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005262_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005262_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005262_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Magento は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005262_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:magentocommerc:magento"/>
    <sec:identifier>JVNDB-2012-005262</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005261:tmhOAuth &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005261_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005261_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005261_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
tmhOAuth は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005261_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:themattharris:tmhoauth"/>
    <sec:identifier>JVNDB-2012-005261</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005260:TwitterOAuth &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005260_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005260_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005260_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TwitterOAuth は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005260_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:abraham_williams:twitteroauth"/>
    <sec:identifier>JVNDB-2012-005260</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005259:Trillian &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005259_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005259_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005259_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Trillian は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。  本脆弱性は、CVE-2009-4831 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005259_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ceruleanstudios:trillian"/>
    <sec:identifier>JVNDB-2012-005259</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005258:Tweepy &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005258_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005258_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005258_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tweepy は、Python の httplib ライブラリの利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005258_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tweepy:tweepy"/>
    <sec:identifier>JVNDB-2012-005258</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005257:Open Source Classifieds &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005257_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005257_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005257_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Open Source Classifieds は、PHP の fsockopen 関数の利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005257_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opensourceclassifieds:opensourceclassifieds"/>
    <sec:identifier>JVNDB-2012-005257</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005256:Android &#29992; Groupon Redemption &#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005256_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005256_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005256_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Groupon Redemption アプリケーションは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005256_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:groupon:groupon_merchants"/>
    <sec:identifier>JVNDB-2012-005256</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005255:Zamboni &#12398;&#12467;&#12531;&#12488;&#12522;&#12499;&#12517;&#12540;&#12471;&#12519;&#12531;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005255_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005255_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005255_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zamboni のコントリビューション機能は、Python の urllib2 ライブラリの利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005255_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:zamboni"/>
    <sec:identifier>JVNDB-2012-005255</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005254:Lynx &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005254_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005254_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005254_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Lynx は、特定の GnuTLS の関数の不正な利用に関連して、信頼された認証局によりサーバ証明書が署名されていることを検証しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005254_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lynx:lynx"/>
    <sec:identifier>JVNDB-2012-005254</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005253:Android &#29992; Chase Mobile Banking &#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005253_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005253_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005253_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Chase Mobile Banking アプリケーションは、デフォルトの X509TrustManager のオーバーライドに関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005253_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jpmorganchase:chase_mobile"/>
    <sec:identifier>JVNDB-2012-005253</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005252:Google AdMob &#12398; developer-account &#12469;&#12531;&#12503;&#12523;&#12467;&#12540;&#12489;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005252_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005252_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005252_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google AdMob の developer-account サンプルコードは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005252_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:admob"/>
    <sec:identifier>JVNDB-2012-005252</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005251:FilesAnywhere &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005251_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005251_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005251_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
FilesAnywhere は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005251_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:filesanywhere:filesanywhere"/>
    <sec:identifier>JVNDB-2012-005251</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005250:ElephantDrive &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005250_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005250_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005250_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ElephantDrive は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005250_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:elephantdrive:elephantdrive"/>
    <sec:identifier>JVNDB-2012-005250</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005249:Amazon EC2 API Tools Java &#12521;&#12452;&#12502;&#12521;&#12522;&#12394;&#12393;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Codehaus XFire &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005249_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005249_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005249_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Amazon EC2 API Tools Java ライブラリ、およびその他の製品で使用される Codehaus XFire は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005249_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:ec2_api_tools_java_library"/>
    <category term="cpe:/a:codehaus:xfire"/>
    <sec:identifier>JVNDB-2012-005249</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005248:AOL Instant Messenger &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005248_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005248_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005248_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
AOL Instant Messenger (AIM) は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005248_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:aol:instant_messenger"/>
    <sec:identifier>JVNDB-2012-005248</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005247:iOS &#29992; Rackspace &#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005247_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005247_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005247_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
iOS 用 Rackspace アプリケーションは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005247_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rackspace_hosting:rackspace"/>
    <sec:identifier>JVNDB-2012-005247</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005246:GitHub Gaug.es &#12394;&#12393;&#12398;&#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; weberknecht &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005246_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005246_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005246_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GitHub Gaug.es およびその他の製品で使用される weberknecht は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005246_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:github:gaug.es"/>
    <category term="cpe:/a:roderick_baier:weberknech"/>
    <sec:identifier>JVNDB-2012-005246</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005245:Android &#29992; Android_Pusher &#12521;&#12452;&#12502;&#12521;&#12522;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005245_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005245_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005245_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Android_Pusher ライブラリは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005245_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emorym:andrpoid_pusher"/>
    <sec:identifier>JVNDB-2012-005245</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005244:Android &#29992; ACRA &#12521;&#12452;&#12502;&#12521;&#12522;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005244_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005244_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005244_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 ACRA ライブラリは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005244_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:acra:acra_library"/>
    <sec:identifier>JVNDB-2012-005244</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005243:Android &#29992; Breezy &#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005243_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005243_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005243_AD_1.html</id>
    <published>2012-11-07T17:38:51+09:00</published>
    <updated>2012-11-07T17:38:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 用 Breezy アプリケーションは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005243_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:breezy:breezy"/>
    <sec:identifier>JVNDB-2012-005243</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005242:Zen Cart &#12398; LinkPoint &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005242_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005242_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005242_AD_1.html</id>
    <published>2012-11-07T16:40:19+09:00</published>
    <updated>2012-11-07T16:40:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zen Cart の LinkPoint モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005242_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:firstdata:linkpoint"/>
    <category term="cpe:/a:zen-cart:zen_cart"/>
    <sec:identifier>JVNDB-2012-005242</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005241:Zen Cart &#12398; Authorize.Net eCheck &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005241_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005241_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005241_AD_1.html</id>
    <published>2012-11-07T16:39:43+09:00</published>
    <updated>2012-11-07T16:39:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zen Cart の Authorize.Net eCheck モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005241_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lincolnloop:authorize.net_echeck_module"/>
    <category term="cpe:/a:zen-cart:zen_cart"/>
    <sec:identifier>JVNDB-2012-005241</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005240:Zen Cart &#12398; PayPal Payments Pro &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005240_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005240_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005240_AD_1.html</id>
    <published>2012-11-07T16:37:39+09:00</published>
    <updated>2012-11-07T16:37:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zen Cart の PayPal Payments Pro モジュールは、PHP の fsockopen 関数の利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。  本脆弱性は、CVE-2012-5805 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005240_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_pro"/>
    <category term="cpe:/a:zen-cart:zen_cart"/>
    <sec:identifier>JVNDB-2012-005240</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005239:Zen Cart &#12398; PayPal IPN &#27231;&#33021;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005239_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005239_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005239_AD_1.html</id>
    <published>2012-11-07T16:36:17+09:00</published>
    <updated>2012-11-07T16:36:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zen Cart の PayPal IPN 機能は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。  本脆弱性は、CVE-2012-5806 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005239_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:ipn"/>
    <category term="cpe:/a:zen-cart:zen_cart"/>
    <sec:identifier>JVNDB-2012-005239</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005238:Ubercart &#12398; CyberSource &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005238_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005238_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005238_AD_1.html</id>
    <published>2012-11-07T16:35:21+09:00</published>
    <updated>2012-11-07T16:35:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubercart の CyberSource モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005238_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cybersource_module_project:cybersource"/>
    <category term="cpe:/a:ubercart:ubercart"/>
    <sec:identifier>JVNDB-2012-005238</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005237:Ubercart &#12398; Authorize.Net &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005237_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005237_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005237_AD_1.html</id>
    <published>2012-11-07T16:34:39+09:00</published>
    <updated>2012-11-07T16:34:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubercart の Authorize.Net モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005237_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irata:authorize.net_module"/>
    <category term="cpe:/a:ubercart:ubercart"/>
    <sec:identifier>JVNDB-2012-005237</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005236:Ubercart &#12398; PayPal &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005236_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005236_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005236_AD_1.html</id>
    <published>2012-11-07T16:34:04+09:00</published>
    <updated>2012-11-07T16:34:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubercart の PayPal モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005236_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ubercart:ubercart"/>
    <sec:identifier>JVNDB-2012-005236</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005235:PrestaShop &#12398; PayPal &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005235_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005235_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005235_AD_1.html</id>
    <published>2012-11-07T16:33:16+09:00</published>
    <updated>2012-11-07T16:33:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PrestaShop の PayPal モジュールは、PHP の fsockopen 関数の利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005235_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:paypal"/>
    <category term="cpe:/a:prestashop:prestashop"/>
    <sec:identifier>JVNDB-2012-005235</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005234:PrestaShop &#12398; eBay &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005234_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005234_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005234_AD_1.html</id>
    <published>2012-11-07T16:32:24+09:00</published>
    <updated>2012-11-07T16:32:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PrestaShop の eBay モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005234_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:ebay"/>
    <category term="cpe:/a:prestashop:prestashop"/>
    <sec:identifier>JVNDB-2012-005234</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005233:PrestaShop &#12398; Canada Post &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005233_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005233_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005233_AD_1.html</id>
    <published>2012-11-07T16:31:39+09:00</published>
    <updated>2012-11-07T16:31:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PrestaShop の Canada Post モジュールは、PHP の fsockopen 関数の利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005233_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:prestashop"/>
    <category term="cpe:/a:presto-changeo:canadapost"/>
    <sec:identifier>JVNDB-2012-005233</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005232:osCommerce &#12398; PayPal Pro PayFlow EC &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005232_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005232_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005232_AD_1.html</id>
    <published>2012-11-07T16:31:04+09:00</published>
    <updated>2012-11-07T16:31:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の PayPal Pro PayFlow EC モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005232_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <sec:identifier>JVNDB-2012-005232</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005231:osCommerce &#12398; PayPal Payflow Pro &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005231_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005231_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005231_AD_1.html</id>
    <published>2012-11-07T16:30:31+09:00</published>
    <updated>2012-11-07T16:30:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の PayPal Payflow Pro モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005231_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:brian_burton:paypal_pro_payflow_module"/>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <sec:identifier>JVNDB-2012-005231</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005230:osCommerce &#12398; PayPal Pro &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005230_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005230_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005230_AD_1.html</id>
    <published>2012-11-07T16:29:54+09:00</published>
    <updated>2012-11-07T16:29:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の PayPal Pro モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005230_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <category term="cpe:/a:paypal:paypal_pro"/>
    <sec:identifier>JVNDB-2012-005230</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005229:osCommerce &#12398; PayPal Express &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005229_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005229_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005229_AD_1.html</id>
    <published>2012-11-07T16:28:49+09:00</published>
    <updated>2012-11-07T16:28:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の PayPal Express モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005229_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:akunamachata:paypal_express_module"/>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <sec:identifier>JVNDB-2012-005229</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005228:osCommerce &#12398; MoneyBookers &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005228_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005228_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005228_AD_1.html</id>
    <published>2012-11-07T16:28:02+09:00</published>
    <updated>2012-11-07T16:28:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の MoneyBookers モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005228_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moneybookers:moneybookers"/>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <sec:identifier>JVNDB-2012-005228</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005227:osCommerce &#12398; Authorize.Net &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005227_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005227_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005227_AD_1.html</id>
    <published>2012-11-07T16:26:53+09:00</published>
    <updated>2012-11-07T16:26:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の Authorize.Net モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005227_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:harald_ponce_de_leon:authorize.net"/>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <sec:identifier>JVNDB-2012-005227</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005226:osCommerce &#12398; Sage Pay Direct &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005226_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005226_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005226_AD_1.html</id>
    <published>2012-11-07T16:15:57+09:00</published>
    <updated>2012-11-07T16:15:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
osCommerce の Sage Pay Direct モジュールは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005226_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce"/>
    <category term="cpe:/a:sagepay:sage_pay_direct_module"/>
    <sec:identifier>JVNDB-2012-005226</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005225:PayPal Invoicing &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005225_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005225_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005225_AD_1.html</id>
    <published>2012-11-07T14:45:52+09:00</published>
    <updated>2012-11-07T14:45:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal Invoicing は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005225_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:invoicing"/>
    <sec:identifier>JVNDB-2012-005225</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005224:PayPal Payments Standard PHP &#12521;&#12452;&#12502;&#12521;&#12522;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005224_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005224_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005224_AD_1.html</id>
    <published>2012-11-07T14:45:17+09:00</published>
    <updated>2012-11-07T14:45:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal Payments Standard PHP ライブラリは、特定の TRUE 値の解釈の不備に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005224_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_standard"/>
    <sec:identifier>JVNDB-2012-005224</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005223:PayPal Payments Standard PHP &#12521;&#12452;&#12502;&#12521;&#12522;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005223_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005223_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005223_AD_1.html</id>
    <published>2012-11-07T14:44:34+09:00</published>
    <updated>2012-11-07T14:44:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal Payments Standard PHP ライブラリは、&quot;FALSE&quot; 値のチェックによる certificate-validation (証明書の十分性検証) の意図的な無効化に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005223_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_standard"/>
    <sec:identifier>JVNDB-2012-005223</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005222:PayPal IPN &#12518;&#12540;&#12486;&#12451;&#12522;&#12486;&#12451;&#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005222_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005222_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005222_AD_1.html</id>
    <published>2012-11-07T14:30:05+09:00</published>
    <updated>2012-11-07T14:30:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal IPN ユーティリティは、PHP の fsockopen 関数の利用に関連して、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005222_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:ipn"/>
    <sec:identifier>JVNDB-2012-005222</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005221:PayPal merchant SDK &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005221_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005221_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005221_AD_1.html</id>
    <published>2012-11-07T14:29:20+09:00</published>
    <updated>2012-11-07T14:29:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PayPal merchant SDK は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005221_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:merchant_sdk"/>
    <sec:identifier>JVNDB-2012-005221</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005220:Apache CXF &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005220_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005220_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005220_AD_1.html</id>
    <published>2012-11-07T14:28:53+09:00</published>
    <updated>2012-11-07T14:28:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache CXF の distribution/src/main/release/samples/wsdl_first_https/src/main/ 内の wsdl_first_https サンプルコードは、サーバホスト名と X.509 証明書上の subject の Common Name (CN) または subjectAltName フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005220_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:cxf"/>
    <sec:identifier>JVNDB-2012-005220</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5128:chrome, v8: Google V8 before 3.13.7.5, as used in Google Chrome...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5128_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5128_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5128_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, does not properly perform write operations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5128_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:v8:1.0"/>
    <category term="cpe:/a:google:v8:3.12.0"/>
    <category term="cpe:/a:google:v8:3.12.1"/>
    <category term="cpe:/a:google:v8:3.12.10"/>
    <category term="cpe:/a:google:v8:3.12.11"/>
    <category term="cpe:/a:google:v8:3.12.12"/>
    <category term="cpe:/a:google:v8:3.12.13"/>
    <category term="cpe:/a:google:v8:3.12.14"/>
    <category term="cpe:/a:google:v8:3.12.15"/>
    <category term="cpe:/a:google:v8:3.12.16"/>
    <category term="cpe:/a:google:v8:3.12.17"/>
    <category term="cpe:/a:google:v8:3.12.18"/>
    <category term="cpe:/a:google:v8:3.12.19"/>
    <category term="cpe:/a:google:v8:3.12.2"/>
    <category term="cpe:/a:google:v8:3.12.3"/>
    <category term="cpe:/a:google:v8:3.12.4"/>
    <category term="cpe:/a:google:v8:3.12.5"/>
    <category term="cpe:/a:google:v8:3.12.6"/>
    <category term="cpe:/a:google:v8:3.12.7"/>
    <category term="cpe:/a:google:v8:3.12.8"/>
    <category term="cpe:/a:google:v8:3.12.9"/>
    <category term="cpe:/a:google:v8:3.13.0"/>
    <category term="cpe:/a:google:v8:3.13.1"/>
    <category term="cpe:/a:google:v8:3.13.2"/>
    <category term="cpe:/a:google:v8:3.13.3"/>
    <category term="cpe:/a:google:v8:3.13.4"/>
    <category term="cpe:/a:google:v8:3.13.5"/>
    <category term="cpe:/a:google:v8:3.13.6"/>
    <category term="cpe:/a:google:v8:3.13.7 and previous versions"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>CVE-2012-5128</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5127:chrome: Integer overflow in Google Chrome before 23.0.1271....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5127_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5127_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5127_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Integer overflow in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5127_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5127</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5126:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5126_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5126_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5126_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of plug-in placeholders.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5126_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5126</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5125:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5125_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5125_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5125_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of extension tabs.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5125_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5125</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5124:chrome: Google Chrome before 23.0.1271.64 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5124_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5124_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5124_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.64 does not properly handle textures, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5124_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5124</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5123:chrome: Skia, as used in Google Chrome before 23.0.1271.64,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5123_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5123_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5123_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Skia, as used in Google Chrome before 23.0.1271.64, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5123_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5123</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5122:chrome: Google Chrome before 23.0.1271.64 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5122_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5122_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5122_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.64 does not properly perform a cast of an unspecified variable during handling of input, which allows remote attackers to cause a denial of service or possibly have other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5122_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5122</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5121:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5121_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5121_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5121_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to video layout.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5121_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5121</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5120:chrome, v8: Google V8 before 3.13.7.5, as used in Google Chrome...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5120_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5120_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5120_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, on 64-bit Linux platforms allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers an out-of-bounds access to an array.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5120_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/a:google:v8:1.0"/>
    <category term="cpe:/a:google:v8:3.12.0"/>
    <category term="cpe:/a:google:v8:3.12.1"/>
    <category term="cpe:/a:google:v8:3.12.10"/>
    <category term="cpe:/a:google:v8:3.12.11"/>
    <category term="cpe:/a:google:v8:3.12.12"/>
    <category term="cpe:/a:google:v8:3.12.13"/>
    <category term="cpe:/a:google:v8:3.12.14"/>
    <category term="cpe:/a:google:v8:3.12.15"/>
    <category term="cpe:/a:google:v8:3.12.16"/>
    <category term="cpe:/a:google:v8:3.12.17"/>
    <category term="cpe:/a:google:v8:3.12.18"/>
    <category term="cpe:/a:google:v8:3.12.19"/>
    <category term="cpe:/a:google:v8:3.12.2"/>
    <category term="cpe:/a:google:v8:3.12.3"/>
    <category term="cpe:/a:google:v8:3.12.4"/>
    <category term="cpe:/a:google:v8:3.12.5"/>
    <category term="cpe:/a:google:v8:3.12.6"/>
    <category term="cpe:/a:google:v8:3.12.7"/>
    <category term="cpe:/a:google:v8:3.12.8"/>
    <category term="cpe:/a:google:v8:3.12.9"/>
    <category term="cpe:/a:google:v8:3.13.0"/>
    <category term="cpe:/a:google:v8:3.13.1"/>
    <category term="cpe:/a:google:v8:3.13.2"/>
    <category term="cpe:/a:google:v8:3.13.3"/>
    <category term="cpe:/a:google:v8:3.13.4"/>
    <category term="cpe:/a:google:v8:3.13.5"/>
    <category term="cpe:/a:google:v8:3.13.6"/>
    <category term="cpe:/a:google:v8:3.13.7 and previous versions"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>CVE-2012-5120</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5119:chrome: Race condition in Pepper, as used in Google Chrome ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5119_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5119_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5119_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Race condition in Pepper, as used in Google Chrome before 23.0.1271.64, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to buffers.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5119_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5119</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5118:chrome: Google Chrome before 23.0.1271.64 on Mac OS X does ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5118_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5118_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5118_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.64 on Mac OS X does not properly validate an integer value during the handling of GPU command buffers, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5118_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>CVE-2012-5118</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5117:chrome: Google Chrome before 23.0.1271.64 does not properly...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5117_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5117_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5117_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.64 does not properly restrict the loading of an SVG subresource in the context of an IMG element, which has unspecified impact and remote attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5117_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5117</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5116:chrome: Use-after-free vulnerability in Google Chrome befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5116_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5116_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5116_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG filters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5116_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <sec:identifier>CVE-2012-5116</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5115:chrome: Google Chrome before 23.0.1271.64 on Mac OS X does ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5115_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5115_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5115_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Google Chrome before 23.0.1271.64 on Mac OS X does not properly mitigate improper write behavior in graphics drivers, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger &quot;wild writes.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5115_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:23.0.1271.0"/>
    <category term="cpe:/a:google:chrome:23.0.1271.1"/>
    <category term="cpe:/a:google:chrome:23.0.1271.10"/>
    <category term="cpe:/a:google:chrome:23.0.1271.11"/>
    <category term="cpe:/a:google:chrome:23.0.1271.12"/>
    <category term="cpe:/a:google:chrome:23.0.1271.13"/>
    <category term="cpe:/a:google:chrome:23.0.1271.14"/>
    <category term="cpe:/a:google:chrome:23.0.1271.15"/>
    <category term="cpe:/a:google:chrome:23.0.1271.16"/>
    <category term="cpe:/a:google:chrome:23.0.1271.17"/>
    <category term="cpe:/a:google:chrome:23.0.1271.18"/>
    <category term="cpe:/a:google:chrome:23.0.1271.19"/>
    <category term="cpe:/a:google:chrome:23.0.1271.2"/>
    <category term="cpe:/a:google:chrome:23.0.1271.20"/>
    <category term="cpe:/a:google:chrome:23.0.1271.21"/>
    <category term="cpe:/a:google:chrome:23.0.1271.22"/>
    <category term="cpe:/a:google:chrome:23.0.1271.23"/>
    <category term="cpe:/a:google:chrome:23.0.1271.24"/>
    <category term="cpe:/a:google:chrome:23.0.1271.26"/>
    <category term="cpe:/a:google:chrome:23.0.1271.3"/>
    <category term="cpe:/a:google:chrome:23.0.1271.30"/>
    <category term="cpe:/a:google:chrome:23.0.1271.31"/>
    <category term="cpe:/a:google:chrome:23.0.1271.32"/>
    <category term="cpe:/a:google:chrome:23.0.1271.33"/>
    <category term="cpe:/a:google:chrome:23.0.1271.35"/>
    <category term="cpe:/a:google:chrome:23.0.1271.36"/>
    <category term="cpe:/a:google:chrome:23.0.1271.37"/>
    <category term="cpe:/a:google:chrome:23.0.1271.38"/>
    <category term="cpe:/a:google:chrome:23.0.1271.39"/>
    <category term="cpe:/a:google:chrome:23.0.1271.4"/>
    <category term="cpe:/a:google:chrome:23.0.1271.40"/>
    <category term="cpe:/a:google:chrome:23.0.1271.41"/>
    <category term="cpe:/a:google:chrome:23.0.1271.44"/>
    <category term="cpe:/a:google:chrome:23.0.1271.45"/>
    <category term="cpe:/a:google:chrome:23.0.1271.46"/>
    <category term="cpe:/a:google:chrome:23.0.1271.49"/>
    <category term="cpe:/a:google:chrome:23.0.1271.5"/>
    <category term="cpe:/a:google:chrome:23.0.1271.50"/>
    <category term="cpe:/a:google:chrome:23.0.1271.51"/>
    <category term="cpe:/a:google:chrome:23.0.1271.52"/>
    <category term="cpe:/a:google:chrome:23.0.1271.53"/>
    <category term="cpe:/a:google:chrome:23.0.1271.54"/>
    <category term="cpe:/a:google:chrome:23.0.1271.55"/>
    <category term="cpe:/a:google:chrome:23.0.1271.56"/>
    <category term="cpe:/a:google:chrome:23.0.1271.57"/>
    <category term="cpe:/a:google:chrome:23.0.1271.58"/>
    <category term="cpe:/a:google:chrome:23.0.1271.59"/>
    <category term="cpe:/a:google:chrome:23.0.1271.6"/>
    <category term="cpe:/a:google:chrome:23.0.1271.60"/>
    <category term="cpe:/a:google:chrome:23.0.1271.61"/>
    <category term="cpe:/a:google:chrome:23.0.1271.62 and previous versions"/>
    <category term="cpe:/a:google:chrome:23.0.1271.7"/>
    <category term="cpe:/a:google:chrome:23.0.1271.8"/>
    <category term="cpe:/a:google:chrome:23.0.1271.9"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>CVE-2012-5115</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5280:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5280_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5280_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5280_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5275, CVE-2012-5276, and CVE-2012-5277.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5280_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5280</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5279:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Adobe Flash Player before 10.3.183.43 and 11.x befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5279_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5279_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5279_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5279_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5279</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5278:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Adobe Flash Player before 10.3.183.43 and 11.x befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5278_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5278_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5278_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allow attackers to bypass intended access restrictions and execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5278_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5278</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5277:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5277_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5277_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5277_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5275, CVE-2012-5276, and CVE-2012-5280.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5277_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5277</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5276:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5276_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5276_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5276_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5275, CVE-2012-5277, and CVE-2012-5280.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5276_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5276</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5275:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5275_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5275_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5275_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5276, CVE-2012-5277, and CVE-2012-5280.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5275_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5275</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5274:flash_player, flash_player_for_android, adobe_air, adobe_air_sdk: Buffer overflow in Adobe Flash Player before 10.3.1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5274_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5274_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5274_AD_1.html</id>
    <published>2012-11-07T00:00:00+09:00</published>
    <updated>2012-11-07T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5275, CVE-2012-5276, CVE-2012-5277, and CVE-2012-5280.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5274_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air:1.0"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.0.8.4990"/>
    <category term="cpe:/a:adobe:adobe_air:1.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.1.0.5790"/>
    <category term="cpe:/a:adobe:adobe_air:1.5"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.0.7220"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.1.8210"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.2"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9120"/>
    <category term="cpe:/a:adobe:adobe_air:1.5.3.9130"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.2.12610"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.3.13070"/>
    <category term="cpe:/a:adobe:adobe_air:2.0.4"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.0.16600"/>
    <category term="cpe:/a:adobe:adobe_air:2.5.1.17730"/>
    <category term="cpe:/a:adobe:adobe_air:2.6"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19120"/>
    <category term="cpe:/a:adobe:adobe_air:2.6.0.19140"/>
    <category term="cpe:/a:adobe:adobe_air:2.7"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1948"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19480"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.1953"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.0.19530"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1"/>
    <category term="cpe:/a:adobe:adobe_air:2.7.1.19610"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.408"/>
    <category term="cpe:/a:adobe:adobe_air:3.0.0.4080"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.485"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.488"/>
    <category term="cpe:/a:adobe:adobe_air:3.1.0.4880"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.207"/>
    <category term="cpe:/a:adobe:adobe_air:3.2.0.2070"/>
    <category term="cpe:/a:adobe:adobe_air:3.3.0.3670"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2540"/>
    <category term="cpe:/a:adobe:adobe_air_sdk:3.4.0.2710 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.1.102.64"/>
    <category term="cpe:/a:adobe:flash_player:10.1.85.3"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.26"/>
    <category term="cpe:/a:adobe:flash_player:10.2.152.32"/>
    <category term="cpe:/a:adobe:flash_player:10.2.153.1"/>
    <category term="cpe:/a:adobe:flash_player:10.2.159.1"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.14"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.22"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.26"/>
    <category term="cpe:/a:adobe:flash_player:10.3.181.34"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.10"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.11"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.15"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.16"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.18"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.20"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.23"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.25"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.29 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.5"/>
    <category term="cpe:/a:adobe:flash_player:10.3.183.7"/>
    <category term="cpe:/a:adobe:flash_player:11.0.1.152"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.55"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.62"/>
    <category term="cpe:/a:adobe:flash_player:11.1.102.63"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.223"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.228"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.233"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.235"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.238"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243"/>
    <category term="cpe:/a:adobe:flash_player:11.2.202.243 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.257"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.262"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.265"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.268"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.271"/>
    <category term="cpe:/a:adobe:flash_player:11.3.300.273"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.265"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.278"/>
    <category term="cpe:/a:adobe:flash_player:11.4.402.287 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.1.106.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.2.157.51"/>
    <category term="cpe:/a:adobe:flash_player_for_android:10.3.186.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.0.1.153"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.102.59"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.10"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.16"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.19 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.5"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.8"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.111.9"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.60"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.112.61"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.11"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.12"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.17"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.20 and previous versions"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.7"/>
    <category term="cpe:/a:adobe:flash_player_for_android:11.1.115.8"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:google:android:2.0"/>
    <category term="cpe:/o:google:android:2.0.1"/>
    <category term="cpe:/o:google:android:2.1"/>
    <category term="cpe:/o:google:android:2.2"/>
    <category term="cpe:/o:google:android:2.2.1"/>
    <category term="cpe:/o:google:android:2.2.2"/>
    <category term="cpe:/o:google:android:2.2.3"/>
    <category term="cpe:/o:google:android:2.2:rev1"/>
    <category term="cpe:/o:google:android:2.3"/>
    <category term="cpe:/o:google:android:2.3.1"/>
    <category term="cpe:/o:google:android:2.3.2"/>
    <category term="cpe:/o:google:android:2.3.3"/>
    <category term="cpe:/o:google:android:2.3.4"/>
    <category term="cpe:/o:google:android:2.3.5"/>
    <category term="cpe:/o:google:android:2.3.6"/>
    <category term="cpe:/o:google:android:2.3.7"/>
    <category term="cpe:/o:google:android:2.3:rev1"/>
    <category term="cpe:/o:google:android:3.0"/>
    <category term="cpe:/o:google:android:3.1"/>
    <category term="cpe:/o:google:android:3.2"/>
    <category term="cpe:/o:google:android:3.2.1"/>
    <category term="cpe:/o:google:android:3.2.2"/>
    <category term="cpe:/o:google:android:3.2.4"/>
    <category term="cpe:/o:google:android:3.2.6"/>
    <category term="cpe:/o:google:android:4.0"/>
    <category term="cpe:/o:google:android:4.0.1"/>
    <category term="cpe:/o:google:android:4.0.2"/>
    <category term="cpe:/o:google:android:4.0.3"/>
    <category term="cpe:/o:google:android:4.0.4"/>
    <category term="cpe:/o:google:android:4.1"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-5274</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005212:RealNetworks RealPlayer &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005212_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005212_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005212_AD_1.html</id>
    <published>2012-11-06T14:36:11+09:00</published>
    <updated>2012-11-06T14:36:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RealNetworks RealPlayer には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005212_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:real:realplayer"/>
    <sec:identifier>JVNDB-2012-005212</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005211:Apple iOS 6.0.1 &#26410;&#28288;&#12398;&#12497;&#12473;&#12467;&#12540;&#12489;&#12525;&#12483;&#12463;&#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12497;&#12473;&#12467;&#12540;&#12489;&#35201;&#27714;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005211_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005211_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005211_AD_1.html</id>
    <published>2012-11-06T14:33:49+09:00</published>
    <updated>2012-11-06T14:33:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple iOS 6.0.1 未満のパスコードロックの実装は、ロックの状態を適切に管理しないため、パスコード要求を回避され、Passbook のパスにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005211_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:iphone_os"/>
    <sec:identifier>JVNDB-2012-005211</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005210:Apple iOS 6.0.1 &#26410;&#28288;&#12398;&#12459;&#12540;&#12493;&#12523;&#12395;&#12362;&#12369;&#12427; ASLR &#20445;&#35703;&#12513;&#12459;&#12491;&#12474;&#12512;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005210_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005210_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005210_AD_1.html</id>
    <published>2012-11-06T14:32:57+09:00</published>
    <updated>2012-11-06T14:32:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple iOS 6.0.1 未満のカーネル内の機能拡張 API は、OSBundleMachOHeaders キーを含むレスポンスにカーネルのアドレスを提供するため、ASLR (アドレス空間配置のランダム化) 保護メカニズムを回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005210_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:iphone_os"/>
    <sec:identifier>JVNDB-2012-005210</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005209:Apple iOS 6.0.1 &#26410;&#28288;&#12362;&#12424;&#12403; Safari 6.0.2 &#26410;&#28288;&#12398; WebKit &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005209_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005209_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005209_AD_1.html</id>
    <published>2012-11-06T14:31:55+09:00</published>
    <updated>2012-11-06T14:31:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple iOS 6.0.1 未満および Safari 6.0.2 未満の WebKit には、競合状態により、任意のコードを実行される、またはサービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005209_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:safari"/>
    <category term="cpe:/o:apple:iphone_os"/>
    <sec:identifier>JVNDB-2012-005209</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005208:IrfanView &#29992; FlashPix PlugIn &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; libfpx &#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005208_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005208_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005208_AD_1.html</id>
    <published>2012-11-06T14:23:14+09:00</published>
    <updated>2012-11-06T14:23:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IrfanView 用 FlashPix PlugIn で使用される libfpx の jpeg/dectile.c 内の Free_All_Memory 関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005208_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:flashpix_plugin"/>
    <sec:identifier>JVNDB-2012-005208</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005207:Drupal &#29992; Activism &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005207_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005207_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005207_AD_1.html</id>
    <published>2012-11-06T14:21:33+09:00</published>
    <updated>2012-11-06T14:21:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Activism モジュールは、&quot;Campaign&quot; コンテンツタイプへのアクセスを適切に制限しないため、アクセス制限を回避される、および不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005207_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:morbus_iff:activism"/>
    <sec:identifier>JVNDB-2012-005207</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005206:Drupal &#29992; Elegant Theme &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005206_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005206_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005206_AD_1.html</id>
    <published>2012-11-06T14:19:42+09:00</published>
    <updated>2012-11-06T14:19:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Elegant Theme モジュールの &quot;3 slide gallery&quot; には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005206_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:devsaran:elegant_theme"/>
    <sec:identifier>JVNDB-2012-005206</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005205:Drupal &#29992; Better Revisions &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005205_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005205_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005205_AD_1.html</id>
    <published>2012-11-06T14:18:13+09:00</published>
    <updated>2012-11-06T14:18:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Better Revisions モジュールの管理インターフェイスには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005205_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:roy_baxter:better_revisions"/>
    <sec:identifier>JVNDB-2012-005205</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005204:Drupal &#29992; Subuser &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12525;&#12540;&#12523;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005204_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005204_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005204_AD_1.html</id>
    <published>2012-11-06T14:07:52+09:00</published>
    <updated>2012-11-06T14:07:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Subuser モジュールは、&quot;switch subuser&quot; パーミッションを適切にチェックしないため、ロールを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005204_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boombatower:subuser"/>
    <sec:identifier>JVNDB-2012-005204</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005203:Drupal &#29992; Subuser &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005203_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005203_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005203_AD_1.html</id>
    <published>2012-11-06T14:04:21+09:00</published>
    <updated>2012-11-06T14:04:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Subuser モジュールには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005203_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boombatower:subuser"/>
    <sec:identifier>JVNDB-2012-005203</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005202:FortiGate Unified Threat Management (UTM) &#12398; CA &#35388;&#26126;&#26360;&#12398;&#21462;&#25201;&#12356;&#12395;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005202_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005202_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005202_AD_1.html</id>
    <published>2012-11-06T11:50:01+09:00</published>
    <updated>2012-11-06T11:50:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
FortiGate の UTM アプライアンスには、CA 証明書の取扱いに問題があります。  FortiGate の UTM アプライアンスでは、デフォルトで共通の CA 証明書を使用しており、その秘密鍵はウェブ上で公開されています。 そのため、この CA 証明書を使用しているすべての機器が本脆弱性の影響を受ける可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005202_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:fortinet:fortigate"/>
    <sec:identifier>JVNDB-2012-005202</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5243:twitteroauth: TwitterOAuth does not verify that the server hostna...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5243_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5243_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5243_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
TwitterOAuth does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5243_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:abraham_williams:twitteroauth:-"/>
    <sec:identifier>CVE-2011-5243</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5242:tmhoauth: tmhOAuth before 0.61 does not verify that the serve...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5242_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5242_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5242_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
tmhOAuth before 0.61 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5242_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:themattharris:tmhoauth:0.11"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.12"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.13"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.14"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.2"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.3"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.4"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.5"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.51"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.52"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.53"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.54"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.55"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.56"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.57"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.58"/>
    <category term="cpe:/a:themattharris:tmhoauth:0.60 and previous versions"/>
    <sec:identifier>CVE-2011-5242</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5241:services_twitter: Services_Twitter 0.6.3 does not verify that the ser...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5241_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5241_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5241_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Services_Twitter 0.6.3 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5241_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:php_group:services_twitter:0.6.3"/>
    <sec:identifier>CVE-2011-5241</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5240:magento: Magento 1.5 and 1.6.2 does not verify that the serv...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5240_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5240_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5240_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Magento 1.5 and 1.6.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5240_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:magentocommerce:magento:1.5"/>
    <category term="cpe:/a:magentocommerce:magento:1.6.2"/>
    <sec:identifier>CVE-2011-5240</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5239:civicrm: CiviCRM 4.0.5 and 4.1.1 does not verify that the se...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5239_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5239_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5239_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5239_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:civicrm:civicrm:4.0.5"/>
    <category term="cpe:/a:civicrm:civicrm:4.1.1"/>
    <sec:identifier>CVE-2011-5239</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5238:checkout-php: google-checkout-php-sample-code before 1.3.2 does n...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5238_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5238_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5238_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
google-checkout-php-sample-code before 1.3.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5238_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:checkout-php:1.2"/>
    <category term="cpe:/a:google:checkout-php:1.2.1:beta"/>
    <category term="cpe:/a:google:checkout-php:1.2.5"/>
    <category term="cpe:/a:google:checkout-php:1.2.5a"/>
    <category term="cpe:/a:google:checkout-php:1.2:beta"/>
    <category term="cpe:/a:google:checkout-php:1.3.0"/>
    <category term="cpe:/a:google:checkout-php:1.3.1 and previous versions"/>
    <sec:identifier>CVE-2011-5238</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5237:wps_toolkit: PayPal WPS ToolKit does not verify that the server ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5237_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5237_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5237_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
PayPal WPS ToolKit does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5237_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:wps_toolkit:-"/>
    <sec:identifier>CVE-2011-5237</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5236:eselect_plus: Moneris eSelectPlus 2.03 PHP API does not verify th...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5236_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5236_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5236_AD_1.html</id>
    <published>2012-11-06T00:00:00+09:00</published>
    <updated>2012-11-06T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Moneris eSelectPlus 2.03 PHP API does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5236_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moneris:eselect_plus:2.03"/>
    <sec:identifier>CVE-2011-5236</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005201:&#26085;&#31435;&#12398; JP1/File Transmission Server/FTP &#12395;&#12362;&#12369;&#12427;&#35079;&#25968;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005201_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005201_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005201_AD_1.html</id>
    <published>2012-11-05T15:44:31+09:00</published>
    <updated>2012-11-05T15:44:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
日立の JP1/File Transmission Server/FTP には、以下の複数の脆弱性が存在します。  　* PASV モードにおける FTP Bounce Attack 　* ファイル伝送におけるバッファオーバーフローの発生 　* ユーザ認証におけるアカウント情報チェックの不備&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005201_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:jp1_file_transmission_server_ftp"/>
    <sec:identifier>JVNDB-2012-005201</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005200:Cisco Prime Data Center Network Manager &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005200_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005200_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005200_AD_1.html</id>
    <published>2012-11-05T11:41:39+09:00</published>
    <updated>2012-11-05T11:41:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Prime Data Center Network Manager (DCNM) は、特定の JBoss MainDeployer 機能へのアクセスを適切に制限しないため、任意のコマンドを実行される脆弱性が存在します。  本問題は、Bug ID CSCtz44924 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005200_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:prime_data_center_network_manager"/>
    <sec:identifier>JVNDB-2012-005200</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005199:Cisco Unified MeetingPlace Web Conferencing &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005199_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005199_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005199_AD_1.html</id>
    <published>2012-11-05T11:37:06+09:00</published>
    <updated>2012-11-05T11:37:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Unified MeetingPlace Web Conferencing には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCua66341 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005199_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:meetingplace_web_confrencing"/>
    <sec:identifier>JVNDB-2012-005199</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5825:tweepy: Tweepy does not verify that the server hostname mat...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5825_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5825_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5825_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Tweepy does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python httplib library.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5825_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tweepy:tweepy:-"/>
    <sec:identifier>CVE-2012-5825</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5824:trillian: Trillian 5.1.0.19 does not verify that the server h...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5824_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5824_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5824_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Trillian 5.1.0.19 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, a different vulnerability than CVE-2009-4831.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5824_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trillian:trillian:5.1.0.19"/>
    <sec:identifier>CVE-2012-5824</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5823:opensourceclassifieds: Open Source Classifieds does not verify that the se...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5823_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5823_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5823_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Open Source Classifieds does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5823_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opensourceclassifieds:opensourceclassifieds:-"/>
    <sec:identifier>CVE-2012-5823</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5822:zamboni: The contribution feature in Zamboni does not verify...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5822_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5822_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5822_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The contribution feature in Zamboni does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python urllib2 library.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5822_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:zamboni:-"/>
    <sec:identifier>CVE-2012-5822</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5821:lynx: Lynx does not verify that the server's certificate ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5821_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5821_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5821_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate, related to improper use of a certain GnuTLS function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5821_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lynx:lynx:-"/>
    <sec:identifier>CVE-2012-5821</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5820:admob: The developer-account sample code in Google AdMob d...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5820_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5820_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5820_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The developer-account sample code in Google AdMob does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5820_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:admob:-"/>
    <sec:identifier>CVE-2012-5820</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5819:filesanywhere: FilesAnywhere does not verify that the server hostn...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5819_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5819_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5819_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
FilesAnywhere does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5819_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:filesanywhere:filesanywhere:-"/>
    <sec:identifier>CVE-2012-5819</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5818:elephantdrive: ElephantDrive does not verify that the server hostn...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5818_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5818_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5818_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ElephantDrive does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5818_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:elephantdrive:elephantdrive:-"/>
    <sec:identifier>CVE-2012-5818</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5817:ec2_api_tools_java_library, xfire: Codehaus XFire 1.2.6 and earlier, as used in the Am...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5817_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5817_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5817_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Codehaus XFire 1.2.6 and earlier, as used in the Amazon EC2 API Tools Java library and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5817_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:ec2_api_tools_java_library:-"/>
    <category term="cpe:/a:codehaus:xfire:1.2.4"/>
    <category term="cpe:/a:codehaus:xfire:1.2.5"/>
    <category term="cpe:/a:codehaus:xfire:1.2.6 and previous versions"/>
    <sec:identifier>CVE-2012-5817</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5816:aim: AOL Instant Messenger (AIM) 1.0.1.2 does not verify...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5816_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5816_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5816_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
AOL Instant Messenger (AIM) 1.0.1.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5816_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:aol:aim:1.0.1.2"/>
    <sec:identifier>CVE-2012-5816</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5815:rackspace: The Rackspace app 2.1.5 for iOS does not verify tha...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5815_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5815_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5815_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Rackspace app 2.1.5 for iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5815_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rackspace_hosting:rackspace:2.1.5:-:%7E%7E%7Eiphone_os%7E%7E"/>
    <sec:identifier>CVE-2012-5815</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5814:gaug.es, weberknecht: Weberknecht, as used in GitHub Gaug.es and other pr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5814_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5814_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5814_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Weberknecht, as used in GitHub Gaug.es and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5814_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:github:gaug.es:-"/>
    <category term="cpe:/a:roderick_baier:weberknecht:-"/>
    <sec:identifier>CVE-2012-5814</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5813:andrpoid_pusher: The Android_Pusher library for Android does not ver...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5813_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5813_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5813_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Android_Pusher library for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5813_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emorym:andrpoid_pusher:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5813</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5812:acra_library: The ACRA library for Android does not verify that t...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5812_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5812_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5812_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The ACRA library for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5812_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:acra:acra_library:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5812</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5811:breezy: The Breezy application for Android does not verify ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5811_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5811_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5811_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Breezy application for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5811_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:breezy:breezy:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5811</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5810:chase_mobile: The Chase mobile banking application for Android do...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5810_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5810_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5810_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Chase mobile banking application for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to overriding the default X509TrustManager.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5810_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jpmorganchase:chase_mobile:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5810</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5809:groupon_merchants: The Groupon Redemptions application for Android doe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5809_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5809_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5809_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Groupon Redemptions application for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5809_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:groupon:groupon_merchants:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5809</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5808:linkpoint, zen_cart: The LinkPoint module in Zen Cart does not verify th...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5808_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5808_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5808_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The LinkPoint module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5808_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:firstdata:linkpoint:-"/>
    <category term="cpe:/a:zen-cart:zen_cart:-"/>
    <sec:identifier>CVE-2012-5808</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5807:authorize.net_echeck_module, zen_cart: The Authorize.Net eCheck module in Zen Cart does no...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5807_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5807_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5807_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Authorize.Net eCheck module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5807_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lincolnloop:authorize.net_echeck_module:-"/>
    <category term="cpe:/a:zen-cart:zen_cart:-"/>
    <sec:identifier>CVE-2012-5807</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5806:payments_pro, zen_cart: The PayPal Payments Pro module in Zen Cart does not...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5806_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5806_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5806_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal Payments Pro module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function, a different vulnerability than CVE-2012-5805.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5806_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_pro:-"/>
    <category term="cpe:/a:zen-cart:zen_cart:-"/>
    <sec:identifier>CVE-2012-5806</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5805:instant_payment_notification, zen_cart: The PayPal IPN functionality in Zen Cart does not v...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5805_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5805_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5805_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal IPN functionality in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, a different vulnerability than CVE-2012-5806.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5805_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:instant_payment_notification:-"/>
    <category term="cpe:/a:zen-cart:zen_cart:-"/>
    <sec:identifier>CVE-2012-5805</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5804:cybersource, ubercart: The CyberSource module in Ubercart does not verify ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5804_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5804_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5804_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The CyberSource module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5804_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cybersource_module_project:cybersource:-"/>
    <category term="cpe:/a:ubercart:ubercart:-"/>
    <sec:identifier>CVE-2012-5804</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5803:authorize.net_module, ubercart: The Authorize.Net module in Ubercart does not verif...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5803_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5803_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5803_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Authorize.Net module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5803_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irata:authorize.net_module:-"/>
    <category term="cpe:/a:ubercart:ubercart:-"/>
    <sec:identifier>CVE-2012-5803</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5802:paypal, ubercart: The PayPal module in Ubercart does not verify that ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5802_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5802_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5802_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5802_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:paypal:-"/>
    <category term="cpe:/a:ubercart:ubercart:-"/>
    <sec:identifier>CVE-2012-5802</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5801:ebay, prestashop: The PayPal module in PrestaShop does not verify tha...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5801_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5801_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5801_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5801_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:ebay:-"/>
    <category term="cpe:/a:prestashop:prestashop:-"/>
    <sec:identifier>CVE-2012-5801</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5800:ebay, prestashop: The eBay module in PrestaShop does not verify that ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5800_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5800_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5800_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The eBay module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5800_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:ebay:-"/>
    <category term="cpe:/a:prestashop:prestashop:-"/>
    <sec:identifier>CVE-2012-5800</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5799:canadapost, prestashop: The Canada Post (aka CanadaPost) module in PrestaSh...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5799_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5799_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5799_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Canada Post (aka CanadaPost) module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5799_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:prestashop:prestashop:-"/>
    <category term="cpe:/a:presto-changeo:canadapost:-"/>
    <sec:identifier>CVE-2012-5799</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5798:oscommerce, payflow_pro_express_checkout: The PayPal Pro PayFlow EC module in osCommerce does...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5798_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5798_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5798_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal Pro PayFlow EC module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5798_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <category term="cpe:/a:paypal:payflow_pro_express_checkout:-"/>
    <sec:identifier>CVE-2012-5798</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5797:oscommerce, paypal_pro_payflow_module: The PayPal Pro PayFlow module in osCommerce does no...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5797_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5797_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5797_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal Pro PayFlow module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5797_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:brian_burton:paypal_pro_payflow_module:-"/>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <sec:identifier>CVE-2012-5797</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5796:oscommerce, paypal_pro: The PayPal Pro module in osCommerce does not verify...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5796_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5796_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5796_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal Pro module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5796_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <category term="cpe:/a:paypal:paypal_pro:-"/>
    <sec:identifier>CVE-2012-5796</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5795:oscommerce, paypal_express_module: The PayPal Express module in osCommerce does not ve...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5795_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5795_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5795_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal Express module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5795_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:akunamachata:paypal_express_module:-"/>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <sec:identifier>CVE-2012-5795</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5794:moneybookers, oscommerce: The MoneyBookers module in osCommerce does not veri...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5794_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5794_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5794_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The MoneyBookers module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5794_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:moneybookers:moneybookers:-"/>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <sec:identifier>CVE-2012-5794</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5793:authorize.net, oscommerce: The Authorize.Net module in osCommerce does not ver...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5793_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5793_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5793_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Authorize.Net module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5793_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:harald_ponce_de_leon:authorize.net:-"/>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <sec:identifier>CVE-2012-5793</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5792:oscommerce, sage_pay_direct_module: The Sage Pay Direct module in osCommerce does not v...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5792_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5792_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5792_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Sage Pay Direct module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5792_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oscommerce:oscommerce:-"/>
    <category term="cpe:/a:sagepay:sage_pay_direct_module:-"/>
    <sec:identifier>CVE-2012-5792</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5791:invoicing: PayPal Invoicing does not verify that the server ho...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5791_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5791_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5791_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
PayPal Invoicing does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5791_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:invoicing:-"/>
    <sec:identifier>CVE-2012-5791</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5790:payments_standard: PayPal Payments Standard PHP Library 20120427 does ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5790_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5790_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5790_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
PayPal Payments Standard PHP Library 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to misinterpretation of a certain TRUE value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5790_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_standard:20120427"/>
    <sec:identifier>CVE-2012-5790</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5789:payments_standard: PayPal Payments Standard PHP Library before 2012042...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5789_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5789_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5789_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
PayPal Payments Standard PHP Library before 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to intentional disabling of certificate-validation checks through a &quot;FALSE&quot; value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5789_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:payments_standard:-"/>
    <sec:identifier>CVE-2012-5789</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5788:ipn: The PayPal IPN utility does not verify that the ser...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5788_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5788_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5788_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal IPN utility does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5788_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:ipn:-"/>
    <sec:identifier>CVE-2012-5788</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5787:merchant_sdk: The PayPal merchant SDK does not verify that the se...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5787_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5787_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5787_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PayPal merchant SDK does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5787_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:paypal:merchant_sdk:-"/>
    <sec:identifier>CVE-2012-5787</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5786:cxf: The wsdl_first_https sample code in distribution/sr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5786_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5786_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5786_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The wsdl_first_https sample code in distribution/src/main/release/samples/wsdl_first_https/src/main/ in Apache CXF, possibly 2.6.0, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5786_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:cxf:-"/>
    <category term="cpe:/a:apache:cxf:2.6.0"/>
    <sec:identifier>CVE-2012-5786</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5785:axis2: Apache Axis2/Java 1.6.2 and earlier does not verify...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5785_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5785_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5785_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apache Axis2/Java 1.6.2 and earlier does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5785_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:axis2:1.5.1"/>
    <category term="cpe:/a:apache:axis2:1.5.2"/>
    <category term="cpe:/a:apache:axis2:1.5.3"/>
    <category term="cpe:/a:apache:axis2:1.5.4"/>
    <category term="cpe:/a:apache:axis2:1.5.5"/>
    <category term="cpe:/a:apache:axis2:1.5.6"/>
    <category term="cpe:/a:apache:axis2:1.6.0"/>
    <category term="cpe:/a:apache:axis2:1.6.1"/>
    <category term="cpe:/a:apache:axis2:1.6.2 and previous versions"/>
    <sec:identifier>CVE-2012-5785</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5784:activemq, axis, mass_pay, payments_pro, transactional_information_soap: Apache Axis 1.4 and earlier, as used in PayPal Paym...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5784_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5784_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5784_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional Information SOAP, the Java Message Service implementation in Apache ActiveMQ, and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5784_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:activemq:-"/>
    <category term="cpe:/a:apache:axis:-:alpha1"/>
    <category term="cpe:/a:apache:axis:-:alpha2"/>
    <category term="cpe:/a:apache:axis:-:alpha3"/>
    <category term="cpe:/a:apache:axis:-:beta1"/>
    <category term="cpe:/a:apache:axis:-:beta2"/>
    <category term="cpe:/a:apache:axis:-:beta3"/>
    <category term="cpe:/a:apache:axis:1.0"/>
    <category term="cpe:/a:apache:axis:1.0:beta"/>
    <category term="cpe:/a:apache:axis:1.0:rc1"/>
    <category term="cpe:/a:apache:axis:1.0:rc2"/>
    <category term="cpe:/a:apache:axis:1.1"/>
    <category term="cpe:/a:apache:axis:1.1:beta"/>
    <category term="cpe:/a:apache:axis:1.1:rc1"/>
    <category term="cpe:/a:apache:axis:1.1:rc2"/>
    <category term="cpe:/a:apache:axis:1.2"/>
    <category term="cpe:/a:apache:axis:1.2.1"/>
    <category term="cpe:/a:apache:axis:1.2:alpha"/>
    <category term="cpe:/a:apache:axis:1.2:beta1"/>
    <category term="cpe:/a:apache:axis:1.2:beta2"/>
    <category term="cpe:/a:apache:axis:1.2:beta3"/>
    <category term="cpe:/a:apache:axis:1.2:rc1"/>
    <category term="cpe:/a:apache:axis:1.2:rc2"/>
    <category term="cpe:/a:apache:axis:1.2:rc3"/>
    <category term="cpe:/a:apache:axis:1.3"/>
    <category term="cpe:/a:apache:axis:1.4 and previous versions"/>
    <category term="cpe:/a:paypal:mass_pay:-"/>
    <category term="cpe:/a:paypal:payments_pro:-"/>
    <category term="cpe:/a:paypal:transactional_information_soap:-"/>
    <sec:identifier>CVE-2012-5784</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5783:commons-httpclient, flexible_payments_service: Apache Commons HttpClient 3.x, as used in Amazon Fl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5783_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5783_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5783_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5783_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:flexible_payments_service:-"/>
    <category term="cpe:/a:apache:commons-httpclient:3.0"/>
    <sec:identifier>CVE-2012-5783</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5782:flexible_payments_service: Amazon Flexible Payments Service (FPS) PHP Library ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5782_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5782_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5782_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Amazon Flexible Payments Service (FPS) PHP Library does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to misinterpretation of a certain &quot;true&quot; value.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5782_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:flexible_payments_service:-"/>
    <sec:identifier>CVE-2012-5782</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5781:elastic_load_balancing_api_tools: Amazon Elastic Load Balancing API Tools does not ve...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5781_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5781_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5781_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Amazon Elastic Load Balancing API Tools does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to overriding the default JDK X509TrustManager.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5781_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:-"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.10.0"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.11.1"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.12.0"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.14.3"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.15.1"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.17.0"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.3.4"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0.9.3"/>
    <category term="cpe:/a:amazon:elastic_load_balancing_api_tools:1.0:1"/>
    <sec:identifier>CVE-2012-5781</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5780:merchant_sdk: The Amazon merchant SDK does not verify that the se...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5780_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5780_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5780_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Amazon merchant SDK does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5780_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:amazon:merchant_sdk:-"/>
    <sec:identifier>CVE-2012-5780</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3446:libcloud: Apache Libcloud before 0.11.1 uses an incorrect reg...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3446_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3446_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3446_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Apache Libcloud before 0.11.1 uses an incorrect regular expression during verification of whether the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3446_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:libcloud:0.10.1"/>
    <category term="cpe:/a:apache:libcloud:0.11.0 and previous versions"/>
    <category term="cpe:/a:apache:libcloud:0.2.0"/>
    <category term="cpe:/a:apache:libcloud:0.3.0"/>
    <category term="cpe:/a:apache:libcloud:0.3.1"/>
    <category term="cpe:/a:apache:libcloud:0.4.0"/>
    <category term="cpe:/a:apache:libcloud:0.4.2"/>
    <category term="cpe:/a:apache:libcloud:0.5.0"/>
    <category term="cpe:/a:apache:libcloud:0.5.2"/>
    <category term="cpe:/a:apache:libcloud:0.6.0:beta1"/>
    <category term="cpe:/a:apache:libcloud:0.6.1"/>
    <category term="cpe:/a:apache:libcloud:0.6.2"/>
    <category term="cpe:/a:apache:libcloud:0.7.0"/>
    <category term="cpe:/a:apache:libcloud:0.7.1"/>
    <category term="cpe:/a:apache:libcloud:0.8.0"/>
    <category term="cpe:/a:apache:libcloud:0.9.1"/>
    <sec:identifier>CVE-2012-3446</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5170:pebble: Open redirect vulnerability in Pebble before 2.6.4 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5170_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5170_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5170_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Open redirect vulnerability in Pebble before 2.6.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5170_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:simon_brown:pebble:1.0"/>
    <category term="cpe:/a:simon_brown:pebble:1.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.3"/>
    <category term="cpe:/a:simon_brown:pebble:1.4"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.1_01"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4.2_01"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.4:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.5"/>
    <category term="cpe:/a:simon_brown:pebble:1.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.5:beta2"/>
    <category term="cpe:/a:simon_brown:pebble:1.6:beta3"/>
    <category term="cpe:/a:simon_brown:pebble:1.7"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.1"/>
    <category term="cpe:/a:simon_brown:pebble:1.7.2"/>
    <category term="cpe:/a:simon_brown:pebble:1.7:beta1"/>
    <category term="cpe:/a:simon_brown:pebble:1.8"/>
    <category term="cpe:/a:simon_brown:pebble:1.9"/>
    <category term="cpe:/a:simon_brown:pebble:2.0"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:m3"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.0:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.0.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.1:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.3.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.4"/>
    <category term="cpe:/a:simon_brown:pebble:2.4:rc2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5.3"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m1"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:m2"/>
    <category term="cpe:/a:simon_brown:pebble:2.5:rc1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.1"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.2"/>
    <category term="cpe:/a:simon_brown:pebble:2.6.3 and previous versions"/>
    <category term="cpe:/a:simon_brown:pebble:2.6:m1"/>
    <sec:identifier>CVE-2012-5170</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4987:realplayer: Stack-based buffer overflow in RealNetworks RealPla...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4987_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4987_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4987_AD_1.html</id>
    <published>2012-11-04T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in RealNetworks RealPlayer 15.0.5.109 allows user-assisted remote attackers to execute arbitrary code via a crafted ZIP file that triggers incorrect processing of long pathnames by the Watch Folders feature.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4987_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:realnetworks:realplayer:15.0.5.109"/>
    <sec:identifier>CVE-2012-4987</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3750:iphone_os: The Passcode Lock implementation in Apple iOS befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3750_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3750_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3750_AD_1.html</id>
    <published>2012-11-03T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Passcode Lock implementation in Apple iOS before 6.0.1 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement and access Passbook passes via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3750_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:iphone_os:1.0.0"/>
    <category term="cpe:/o:apple:iphone_os:1.0.1"/>
    <category term="cpe:/o:apple:iphone_os:1.0.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.0"/>
    <category term="cpe:/o:apple:iphone_os:1.1.1"/>
    <category term="cpe:/o:apple:iphone_os:1.1.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.3"/>
    <category term="cpe:/o:apple:iphone_os:1.1.4"/>
    <category term="cpe:/o:apple:iphone_os:1.1.5"/>
    <category term="cpe:/o:apple:iphone_os:2.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.1"/>
    <category term="cpe:/o:apple:iphone_os:2.0.2"/>
    <category term="cpe:/o:apple:iphone_os:2.1"/>
    <category term="cpe:/o:apple:iphone_os:2.1.1"/>
    <category term="cpe:/o:apple:iphone_os:2.2"/>
    <category term="cpe:/o:apple:iphone_os:2.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.0"/>
    <category term="cpe:/o:apple:iphone_os:3.0.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1.2"/>
    <category term="cpe:/o:apple:iphone_os:3.1.3"/>
    <category term="cpe:/o:apple:iphone_os:3.2"/>
    <category term="cpe:/o:apple:iphone_os:3.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.2.2"/>
    <category term="cpe:/o:apple:iphone_os:4.0"/>
    <category term="cpe:/o:apple:iphone_os:4.0.1"/>
    <category term="cpe:/o:apple:iphone_os:4.0.2"/>
    <category term="cpe:/o:apple:iphone_os:4.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.5"/>
    <category term="cpe:/o:apple:iphone_os:4.2.8"/>
    <category term="cpe:/o:apple:iphone_os:4.3.0"/>
    <category term="cpe:/o:apple:iphone_os:4.3.1"/>
    <category term="cpe:/o:apple:iphone_os:4.3.2"/>
    <category term="cpe:/o:apple:iphone_os:4.3.3"/>
    <category term="cpe:/o:apple:iphone_os:4.3.5"/>
    <category term="cpe:/o:apple:iphone_os:5.0"/>
    <category term="cpe:/o:apple:iphone_os:5.0.1"/>
    <category term="cpe:/o:apple:iphone_os:5.1.1"/>
    <category term="cpe:/o:apple:iphone_os:6.0 and previous versions"/>
    <sec:identifier>CVE-2012-3750</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3749:iphone_os: The extensions APIs in the kernel in Apple iOS befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3749_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3749_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3749_AD_1.html</id>
    <published>2012-11-03T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3749_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:iphone_os:1.0.0"/>
    <category term="cpe:/o:apple:iphone_os:1.0.1"/>
    <category term="cpe:/o:apple:iphone_os:1.0.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.0"/>
    <category term="cpe:/o:apple:iphone_os:1.1.1"/>
    <category term="cpe:/o:apple:iphone_os:1.1.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.3"/>
    <category term="cpe:/o:apple:iphone_os:1.1.4"/>
    <category term="cpe:/o:apple:iphone_os:1.1.5"/>
    <category term="cpe:/o:apple:iphone_os:2.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.1"/>
    <category term="cpe:/o:apple:iphone_os:2.0.2"/>
    <category term="cpe:/o:apple:iphone_os:2.1"/>
    <category term="cpe:/o:apple:iphone_os:2.1.1"/>
    <category term="cpe:/o:apple:iphone_os:2.2"/>
    <category term="cpe:/o:apple:iphone_os:2.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.0"/>
    <category term="cpe:/o:apple:iphone_os:3.0.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1.2"/>
    <category term="cpe:/o:apple:iphone_os:3.1.3"/>
    <category term="cpe:/o:apple:iphone_os:3.2"/>
    <category term="cpe:/o:apple:iphone_os:3.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.2.2"/>
    <category term="cpe:/o:apple:iphone_os:4.0"/>
    <category term="cpe:/o:apple:iphone_os:4.0.1"/>
    <category term="cpe:/o:apple:iphone_os:4.0.2"/>
    <category term="cpe:/o:apple:iphone_os:4.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.5"/>
    <category term="cpe:/o:apple:iphone_os:4.2.8"/>
    <category term="cpe:/o:apple:iphone_os:4.3.0"/>
    <category term="cpe:/o:apple:iphone_os:4.3.1"/>
    <category term="cpe:/o:apple:iphone_os:4.3.2"/>
    <category term="cpe:/o:apple:iphone_os:4.3.3"/>
    <category term="cpe:/o:apple:iphone_os:4.3.5"/>
    <category term="cpe:/o:apple:iphone_os:5.0"/>
    <category term="cpe:/o:apple:iphone_os:5.0.1"/>
    <category term="cpe:/o:apple:iphone_os:5.1.1"/>
    <category term="cpe:/o:apple:iphone_os:6.0 and previous versions"/>
    <sec:identifier>CVE-2012-3749</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3748:safari, iphone_os: Race condition in WebKit in Apple iOS before 6.0.1 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3748_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3748_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3748_AD_1.html</id>
    <published>2012-11-03T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Race condition in WebKit in Apple iOS before 6.0.1 and Safari before 6.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript arrays.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3748_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:safari:1.0.0"/>
    <category term="cpe:/a:apple:safari:1.0.0b1"/>
    <category term="cpe:/a:apple:safari:1.0.0b2"/>
    <category term="cpe:/a:apple:safari:1.0.1"/>
    <category term="cpe:/a:apple:safari:1.0.2"/>
    <category term="cpe:/a:apple:safari:1.0.3"/>
    <category term="cpe:/a:apple:safari:1.0:beta"/>
    <category term="cpe:/a:apple:safari:1.0:beta2"/>
    <category term="cpe:/a:apple:safari:1.1.0"/>
    <category term="cpe:/a:apple:safari:1.1.1"/>
    <category term="cpe:/a:apple:safari:1.2.0"/>
    <category term="cpe:/a:apple:safari:1.2.1"/>
    <category term="cpe:/a:apple:safari:1.2.2"/>
    <category term="cpe:/a:apple:safari:1.2.3"/>
    <category term="cpe:/a:apple:safari:1.2.4"/>
    <category term="cpe:/a:apple:safari:1.2.5"/>
    <category term="cpe:/a:apple:safari:1.3"/>
    <category term="cpe:/a:apple:safari:1.3.0"/>
    <category term="cpe:/a:apple:safari:1.3.1"/>
    <category term="cpe:/a:apple:safari:1.3.2"/>
    <category term="cpe:/a:apple:safari:2.0.0"/>
    <category term="cpe:/a:apple:safari:2.0.1"/>
    <category term="cpe:/a:apple:safari:2.0.2"/>
    <category term="cpe:/a:apple:safari:2.0.3"/>
    <category term="cpe:/a:apple:safari:2.0.4"/>
    <category term="cpe:/a:apple:safari:3.0.0"/>
    <category term="cpe:/a:apple:safari:3.0.0b"/>
    <category term="cpe:/a:apple:safari:3.0.1"/>
    <category term="cpe:/a:apple:safari:3.0.1:beta"/>
    <category term="cpe:/a:apple:safari:3.0.1b"/>
    <category term="cpe:/a:apple:safari:3.0.2"/>
    <category term="cpe:/a:apple:safari:3.0.2b"/>
    <category term="cpe:/a:apple:safari:3.0.3"/>
    <category term="cpe:/a:apple:safari:3.0.3b"/>
    <category term="cpe:/a:apple:safari:3.0.4"/>
    <category term="cpe:/a:apple:safari:3.0.4b"/>
    <category term="cpe:/a:apple:safari:3.1.0"/>
    <category term="cpe:/a:apple:safari:3.1.0b"/>
    <category term="cpe:/a:apple:safari:3.1.1"/>
    <category term="cpe:/a:apple:safari:3.1.2"/>
    <category term="cpe:/a:apple:safari:3.2.0"/>
    <category term="cpe:/a:apple:safari:3.2.1"/>
    <category term="cpe:/a:apple:safari:3.2.2"/>
    <category term="cpe:/a:apple:safari:4.0"/>
    <category term="cpe:/a:apple:safari:4.0.0b"/>
    <category term="cpe:/a:apple:safari:4.0.1"/>
    <category term="cpe:/a:apple:safari:4.0.2"/>
    <category term="cpe:/a:apple:safari:4.0.3"/>
    <category term="cpe:/a:apple:safari:4.0.4"/>
    <category term="cpe:/a:apple:safari:4.0.5"/>
    <category term="cpe:/a:apple:safari:4.0:beta"/>
    <category term="cpe:/a:apple:safari:4.1"/>
    <category term="cpe:/a:apple:safari:4.1.1"/>
    <category term="cpe:/a:apple:safari:4.1.2"/>
    <category term="cpe:/a:apple:safari:5.0"/>
    <category term="cpe:/a:apple:safari:5.0.1"/>
    <category term="cpe:/a:apple:safari:5.0.2"/>
    <category term="cpe:/a:apple:safari:5.0.4"/>
    <category term="cpe:/a:apple:safari:5.0.5"/>
    <category term="cpe:/a:apple:safari:5.0.6"/>
    <category term="cpe:/a:apple:safari:5.1"/>
    <category term="cpe:/a:apple:safari:5.1.1"/>
    <category term="cpe:/a:apple:safari:5.1.2"/>
    <category term="cpe:/a:apple:safari:5.1.3"/>
    <category term="cpe:/a:apple:safari:5.1.4"/>
    <category term="cpe:/a:apple:safari:5.1.5"/>
    <category term="cpe:/a:apple:safari:5.1.6"/>
    <category term="cpe:/a:apple:safari:5.1.7"/>
    <category term="cpe:/a:apple:safari:6.0"/>
    <category term="cpe:/a:apple:safari:6.0.1 and previous versions"/>
    <category term="cpe:/o:apple:iphone_os:1.0.0"/>
    <category term="cpe:/o:apple:iphone_os:1.0.1"/>
    <category term="cpe:/o:apple:iphone_os:1.0.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.0"/>
    <category term="cpe:/o:apple:iphone_os:1.1.1"/>
    <category term="cpe:/o:apple:iphone_os:1.1.2"/>
    <category term="cpe:/o:apple:iphone_os:1.1.3"/>
    <category term="cpe:/o:apple:iphone_os:1.1.4"/>
    <category term="cpe:/o:apple:iphone_os:1.1.5"/>
    <category term="cpe:/o:apple:iphone_os:2.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.0"/>
    <category term="cpe:/o:apple:iphone_os:2.0.1"/>
    <category term="cpe:/o:apple:iphone_os:2.0.2"/>
    <category term="cpe:/o:apple:iphone_os:2.1"/>
    <category term="cpe:/o:apple:iphone_os:2.1.1"/>
    <category term="cpe:/o:apple:iphone_os:2.2"/>
    <category term="cpe:/o:apple:iphone_os:2.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.0"/>
    <category term="cpe:/o:apple:iphone_os:3.0.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1"/>
    <category term="cpe:/o:apple:iphone_os:3.1.2"/>
    <category term="cpe:/o:apple:iphone_os:3.1.3"/>
    <category term="cpe:/o:apple:iphone_os:3.2"/>
    <category term="cpe:/o:apple:iphone_os:3.2.1"/>
    <category term="cpe:/o:apple:iphone_os:3.2.2"/>
    <category term="cpe:/o:apple:iphone_os:4.0"/>
    <category term="cpe:/o:apple:iphone_os:4.0.1"/>
    <category term="cpe:/o:apple:iphone_os:4.0.2"/>
    <category term="cpe:/o:apple:iphone_os:4.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.1"/>
    <category term="cpe:/o:apple:iphone_os:4.2.5"/>
    <category term="cpe:/o:apple:iphone_os:4.2.8"/>
    <category term="cpe:/o:apple:iphone_os:4.3.0"/>
    <category term="cpe:/o:apple:iphone_os:4.3.1"/>
    <category term="cpe:/o:apple:iphone_os:4.3.2"/>
    <category term="cpe:/o:apple:iphone_os:4.3.3"/>
    <category term="cpe:/o:apple:iphone_os:4.3.5"/>
    <category term="cpe:/o:apple:iphone_os:5.0"/>
    <category term="cpe:/o:apple:iphone_os:5.0.1"/>
    <category term="cpe:/o:apple:iphone_os:5.1.1"/>
    <category term="cpe:/o:apple:iphone_os:6.0 and previous versions"/>
    <sec:identifier>CVE-2012-3748</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0025:flashpix_plugin: Double free vulnerability in the Free_All_Memory fu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0025_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0025_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0025_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0025_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:flashpix_plugin:4.2.2.0"/>
    <sec:identifier>CVE-2012-0025</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4498:activism: The Activism module 6.x-2.x before 6.x-2.1 for Drup...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4498_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4498_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4498_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Activism module 6.x-2.x before 6.x-2.1 for Drupal does not properly restrict access to the &quot;Campaign&quot; content type, which might allow remote attackers to bypass access restrictions and possibly have other unspecified impact.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4498_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:morbus_iff:activism:6.x-2.0"/>
    <category term="cpe:/a:morbus_iff:activism:6.x-2.x:dev"/>
    <sec:identifier>CVE-2012-4498</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4497:elegant_theme: Cross-site scripting (XSS) vulnerability in the "3 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4497_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4497_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4497_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the &quot;3 slide gallery&quot; in the Elegant Theme module 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with the &quot;administer themes&quot; permission to inject arbitrary web script or HTML via a slide URL.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4497_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:devsaran:elegant_theme:7.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4497</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4493:better_revisions: Cross-site scripting (XSS) vulnerability in the adm...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4493_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4493_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4493_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the administrative interface in the Better Revisions module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the &quot;administer better revisions&quot; permission to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4493_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:roy_baxter:better_revisions:7.x-1.0"/>
    <category term="cpe:/a:roy_baxter:better_revisions:7.x-1.0:rc1"/>
    <category term="cpe:/a:roy_baxter:better_revisions:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4493</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4487:subuser: The Subuser module before 6.x-1.8 for Drupal does n...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4487_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4487_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4487_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Subuser module before 6.x-1.8 for Drupal does not properly check &quot;switch subuser&quot; permissions, which allows remote authenticated parent users to change their role by switching to a subuser they created.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4487_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boombatower:subuser:6.x-1.0"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.1"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.2"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.3"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.4"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.5"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.6"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.7 and previous versions"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4487</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4486:subuser: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4486_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4486_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4486_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-05T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in the Subuser module before 6.x-1.8 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that switch the user to a subuser via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4486_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boombatower:subuser:6.x-1.0"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.1"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.2"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.3"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.4"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.5"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.6"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.7 and previous versions"/>
    <category term="cpe:/a:boombatower:subuser:6.x-1.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4486</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005198:Axigen Free Mail Server &#12395;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005198_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005198_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005198_AD_1.html</id>
    <published>2012-11-02T16:48:26+09:00</published>
    <updated>2012-11-02T16:48:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Axigen Free Mail Server には、ディレクトリトラバーサルの脆弱性が存在します。  Axigen Free Mail Server には、ウェブ管理機能に問題があり、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005198_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gecad:axigen_mail_server"/>
    <sec:identifier>JVNDB-2012-005198</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005197:Orion IPAM &#12395;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005197_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005197_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005197_AD_1.html</id>
    <published>2012-11-02T16:48:00+09:00</published>
    <updated>2012-11-02T16:48:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SolarWinds が提供する Orion IPAM には、クロスサイトスクリプティングの脆弱性が存在します。  SolarWinds が提供する Orion IPAM には、ウェブ管理機能に問題があり、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005197_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:solarwinds:ip_address_manager_web_interface"/>
    <sec:identifier>JVNDB-2012-005197</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005196:Drupal &#29992; Hotblocks &#12514;&#12472;&#12517;&#12540;&#12523;&#12398;&#35373;&#23450;&#12506;&#12540;&#12472;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005196_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005196_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005196_AD_1.html</id>
    <published>2012-11-02T16:16:23+09:00</published>
    <updated>2012-11-02T16:16:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Hotblocks モジュールの設定ページ (admin/settings/hotblocks) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005196_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:justin_dodge:hotblocks"/>
    <sec:identifier>JVNDB-2012-005196</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005195:Drupal &#29992; Hotblocks &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005195_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005195_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005195_AD_1.html</id>
    <published>2012-11-02T16:15:19+09:00</published>
    <updated>2012-11-02T16:15:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Hotblocks モジュールには、サービス運用妨害 (無限ループおよびタイムアウト) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005195_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:justin_dodge:hotblocks"/>
    <sec:identifier>JVNDB-2012-005195</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005194:TP-LINK TL-WR841N &#12523;&#12540;&#12479;&#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Web &#12505;&#12540;&#12473;&#12398;&#31649;&#29702;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005194_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005194_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005194_AD_1.html</id>
    <published>2012-11-02T16:13:44+09:00</published>
    <updated>2012-11-02T16:13:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TP-LINK TL-WR841N ルータ上で稼働する Web ベースの管理機能には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005194_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:tp-link:tl-wr841n"/>
    <category term="cpe:/o:tp-link:tl-wr841n_firmware"/>
    <sec:identifier>JVNDB-2012-005194</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005193:Exim &#12398; dkim.c &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005193_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005193_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005193_AD_1.html</id>
    <published>2012-11-02T16:11:57+09:00</published>
    <updated>2012-11-02T16:11:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Exim の dkim.c 内の dkim_exim_query_dns_txt 関数には、DKIM サポートが有効で、かつ acl_smtp_connect および acl_smtp_rcpt が &quot;warn control = dkim_disable_verify&quot; に設定されていない場合、ヒープベースのバッファオーバーフローが存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005193_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:exim:exim"/>
    <sec:identifier>JVNDB-2012-005193</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005192:Siemens SiPass integrated &#12398;&#12469;&#12540;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005192_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005192_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005192_AD_1.html</id>
    <published>2012-11-02T16:03:03+09:00</published>
    <updated>2012-11-02T16:03:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Siemens SiPass integrated のサーバ内の AscoServer.exe は、イーサネットネットワーク経由で受信した IOCP RPC メッセージを適切に処理しないため、メモリロケーションにデータを書き込まれることで、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005192_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:siemens:sipass_integrated"/>
    <sec:identifier>JVNDB-2012-005192</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005191:Drupal &#29992; Announcements &#12514;&#12472;&#12517;&#12540;&#12523; &#12395;&#12362;&#12369;&#12427;&#12494;&#12540;&#12489;&#12398;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005191_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005191_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005191_AD_1.html</id>
    <published>2012-11-02T15:06:30+09:00</published>
    <updated>2012-11-02T15:06:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Announcements モジュールには、ノードのアクセス制限を回避されるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005191_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nancy_wichmann:announcements"/>
    <sec:identifier>JVNDB-2012-005191</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005190:Drupal &#29992; Email Field &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12456;&#12531;&#12486;&#12451;&#12486;&#12451;&#12395;&#26684;&#32013;&#12373;&#12428;&#12383;&#12450;&#12489;&#12524;&#12473;&#12395;&#38651;&#23376;&#12513;&#12540;&#12523;&#12434;&#36865;&#20449;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005190_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005190_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005190_AD_1.html</id>
    <published>2012-11-02T15:04:51+09:00</published>
    <updated>2012-11-02T15:04:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Email Field モジュールには、エンティティに格納されたアドレスに電子メールを送信される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005190_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:matthias_hutterer:email"/>
    <sec:identifier>JVNDB-2012-005190</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005189:Drupal &#29992; Custom Publishing Options &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005189_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005189_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005189_AD_1.html</id>
    <published>2012-11-02T15:04:08+09:00</published>
    <updated>2012-11-02T15:04:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Custom Publishing Options モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005189_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:inclind:custom_pub"/>
    <sec:identifier>JVNDB-2012-005189</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005188:Drupal &#29992; Mime Mail &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#28155;&#20184;&#12501;&#12449;&#12452;&#12523;&#12392;&#12375;&#12390;&#36865;&#20449;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005188_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005188_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005188_AD_1.html</id>
    <published>2012-11-02T15:01:56+09:00</published>
    <updated>2012-11-02T15:01:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Mime Mail モジュールは、Drupal が外部に公開したファイルのディレクトリへのアクセスを適切に制限しないため、任意のファイルを添付ファイルとして送信される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005188_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mime_mail_module_project:mimemail"/>
    <sec:identifier>JVNDB-2012-005188</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005187:Drupal &#29992; Shibboleth authentication &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005187_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005187_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005187_AD_1.html</id>
    <published>2012-11-02T14:55:10+09:00</published>
    <updated>2012-11-02T14:55:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Shibboleth authentication モジュールには、アクセス制限を回避される、およびその他の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005187_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:niif:shibb_auth"/>
    <sec:identifier>JVNDB-2012-005187</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005186:Drupal &#29992; Shorten URLs &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005186_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005186_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005186_AD_1.html</id>
    <published>2012-11-02T14:54:22+09:00</published>
    <updated>2012-11-02T14:54:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Shorten URLs モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005186_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isaac_sukin:shorten"/>
    <sec:identifier>JVNDB-2012-005186</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005185:Drupal &#29992; Monthly Archive by Node Type &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#21046;&#38480;&#12375;&#12390;&#12356;&#12427;&#12494;&#12540;&#12489;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005185_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005185_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005185_AD_1.html</id>
    <published>2012-11-02T14:53:41+09:00</published>
    <updated>2012-11-02T14:53:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Monthly Archive by Node Type モジュールは、node_access モジュールにより定義されたパーミッションを適切に確認しないため、制限しているノードにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005185_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:earl_dunovant:monthly_archive_by_node_type"/>
    <sec:identifier>JVNDB-2012-005185</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005184:Drupal &#29992; Excluded Users &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005184_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005184_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005184_AD_1.html</id>
    <published>2012-11-02T14:45:27+09:00</published>
    <updated>2012-11-02T14:45:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Excluded Users モジュールには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005184_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ricky_morse:excluded_users"/>
    <sec:identifier>JVNDB-2012-005184</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005183:Drupal &#29992; Secure Login &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12458;&#12540;&#12503;&#12531;&#12522;&#12480;&#12452;&#12524;&#12463;&#12488;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005183_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005183_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005183_AD_1.html</id>
    <published>2012-11-02T14:43:54+09:00</published>
    <updated>2012-11-02T14:43:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Secure Login モジュールの securelogin_secure_redirect 関数には、オープンリダイレクトの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005183_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mark_burdett:securelogin"/>
    <sec:identifier>JVNDB-2012-005183</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005182:Drupal &#29992; Location &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12494;&#12540;&#12489;&#12414;&#12383;&#12399;&#12518;&#12540;&#12470;&#12398;&#26908;&#32034;&#32080;&#26524;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005182_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005182_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005182_AD_1.html</id>
    <published>2012-11-02T14:43:04+09:00</published>
    <updated>2012-11-02T14:43:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Location モジュールは、ユーザ、またはノードのアクセス権限を適切に確認しないため、ノードまたはユーザの検索結果を読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005182_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:location_module_project:location"/>
    <sec:identifier>JVNDB-2012-005182</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005181:Drupal &#29992; Gallery formatter &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005181_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005181_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005181_AD_1.html</id>
    <published>2012-11-02T14:40:38+09:00</published>
    <updated>2012-11-02T14:40:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Gallery formatter モジュールの galleryformatter.tpl.php 内の galleryformatter_field_formatter_view 関数には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005181_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:manuel_garcia:galleryformatter"/>
    <sec:identifier>JVNDB-2012-005181</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005180:Drupal &#29992; Campaign Monitor &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005180_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005180_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005180_AD_1.html</id>
    <published>2012-11-02T14:38:59+09:00</published>
    <updated>2012-11-02T14:38:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Campaign Monitor モジュールの管理インターフェイスには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005180_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trexart:campaignmonitor"/>
    <sec:identifier>JVNDB-2012-005180</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005179:Drupal &#29992; Drupal Commons &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005179_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005179_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005179_AD_1.html</id>
    <published>2012-11-02T14:38:03+09:00</published>
    <updated>2012-11-02T14:38:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Drupal Commons モジュールの modules/features/commons_discussion/commons_discussion.views_default.inc 内の commons_discussion_views_default_views 関数は、ノードのアクセス制限を適切に適用しないため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005179_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:acquia:commons"/>
    <sec:identifier>JVNDB-2012-005179</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005178:Drupal &#29992; Ubercart SecureTrading Payment Method &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#26410;&#25173;&#12356;&#12398;&#12450;&#12452;&#12486;&#12512;&#12434;&#36092;&#20837;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005178_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005178_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005178_AD_1.html</id>
    <published>2012-11-02T14:36:18+09:00</published>
    <updated>2012-11-02T14:36:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Drupal 用 Ubercart SecureTrading Payment Method モジュールは、支払通知の情報を適切に確認しないため、未払いのアイテムを購入される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005178_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:longwaveconsulting:ubercart_securetrading_payment_method_module"/>
    <sec:identifier>JVNDB-2012-005178</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005177:Joomla! &#29992; Language Switcher &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005177_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005177_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005177_AD_1.html</id>
    <published>2012-11-02T14:01:11+09:00</published>
    <updated>2012-11-02T14:01:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! 用 Language Switcher モジュールの modules/mod_languages/tmpl/default.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005177_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>JVNDB-2012-005177</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005176:Joomla! &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005176_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005176_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005176_AD_1.html</id>
    <published>2012-11-02T14:00:18+09:00</published>
    <updated>2012-11-02T14:00:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005176_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>JVNDB-2012-005176</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005175:GE Intelligent Platforms Proficy Real-Time Information Portal &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005175_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005175_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005175_AD_1.html</id>
    <published>2012-11-02T13:59:05+09:00</published>
    <updated>2012-11-02T13:59:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GE Intelligent Platforms Proficy Real-Time Information Portal の Remote Interface Service 内の rifsrvd.exe には、サービス運用妨害 (メモリの破損およびサービスクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-3010 および CVE-2012-3021 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005175_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal"/>
    <sec:identifier>JVNDB-2012-005175</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005174:GE Intelligent Platforms Proficy Real-Time Information Portal &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005174_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005174_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005174_AD_1.html</id>
    <published>2012-11-02T13:57:56+09:00</published>
    <updated>2012-11-02T13:57:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GE Intelligent Platforms Proficy Real-Time Information Portal の Remote Interface Service 内の rifsrvd.exe には、サービス運用妨害 (メモリの破損およびサービスクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-3010 および CVE-2012-3026 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005174_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal"/>
    <sec:identifier>JVNDB-2012-005174</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005173:GE Intelligent Platforms Proficy Real-Time Information Portal &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005173_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005173_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005173_AD_1.html</id>
    <published>2012-11-02T13:57:13+09:00</published>
    <updated>2012-11-02T13:57:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GE Intelligent Platforms Proficy Real-Time Information Portal の Remote Interface Service 内の rifsrvd.exe には、サービス運用妨害 (メモリの破損およびサービスクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-3021 および CVE-2012-3026 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005173_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal"/>
    <sec:identifier>JVNDB-2012-005173</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005172:Xen &#12398; PV &#12489;&#12513;&#12452;&#12531;&#12499;&#12523;&#12480;&#12540;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005172_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005172_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005172_AD_1.html</id>
    <published>2012-11-02T13:52:41+09:00</published>
    <updated>2012-11-02T13:52:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の PV ドメインビルダーは、カーネル、または RAMディスクの (1) 展開前または (2) 展開後のサイズを確認しないため、サービス運用妨害 (ドメイン 0 のメモリ消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005172_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005172</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005171:Xen &#12398; PyGrub &#12502;&#12540;&#12488;&#12525;&#12540;&#12480;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005171_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005171_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005171_AD_1.html</id>
    <published>2012-11-02T13:40:00+09:00</published>
    <updated>2012-11-02T13:40:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xen の PyGrub ブートローダには、サービス運用妨害 (メモリ消費) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005171_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:citrix:xen"/>
    <sec:identifier>JVNDB-2012-005171</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000100:Pebble &#12395;&#12362;&#12369;&#12427;&#12458;&#12540;&#12503;&#12531;&#12522;&#12480;&#12452;&#12524;&#12463;&#12488;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000100_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000100_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000100_AD_1.html</id>
    <published>2012-11-02T12:02:56+09:00</published>
    <updated>2012-11-02T12:02:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pebble には、オープンリダイレクトの脆弱性が存在します。  Pebble は、オープンソースのウェブログシステムです。Pebble には、オープンリダイレクトの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 岸谷隆久 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000100_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:pebble"/>
    <sec:identifier>JVNDB-2012-000100</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000099:Pebble &#12395;&#12362;&#12369;&#12427; HTTP &#12504;&#12483;&#12480;&#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000099_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000099_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000099_AD_1.html</id>
    <published>2012-11-02T12:02:21+09:00</published>
    <updated>2012-11-02T12:02:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pebble には、HTTP ヘッダインジェクションの脆弱性が存在します。  Pebble は、オープンソースのウェブログシステムです。Pebble には、HTTP ヘッダインジェクションの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 岸谷隆久 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000099_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:pebble"/>
    <sec:identifier>JVNDB-2012-000099</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000098:Pebble &#12395;&#12362;&#12356;&#12390;&#35352;&#20107;&#12364;&#38322;&#35239;&#19981;&#33021;&#12395;&#12394;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000098_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000098_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000098_AD_1.html</id>
    <published>2012-11-02T12:01:43+09:00</published>
    <updated>2012-11-02T12:01:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pebble には、細工されたコメントによって、記事が閲覧不能になる脆弱性が存在します。  Pebble は、オープンソースのウェブログシステムです。Pebble には、記事につけられたコメントの処理に問題があり、記事が閲覧不能になる脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 岸谷隆久 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000098_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:pebble"/>
    <sec:identifier>JVNDB-2012-000098</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000097:MosP&#21220;&#24608;&#31649;&#29702;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#35469;&#35388;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000097_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000097_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000097_AD_1.html</id>
    <published>2012-11-02T12:01:07+09:00</published>
    <updated>2012-11-02T12:01:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MosP勤怠管理システムには、認証不備の脆弱性が存在します。  株式会社マインドが提供する MosP勤怠管理システムは、オープンソースの勤怠管理システムです。MosP勤怠管理システムには、認証不備の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 大野 雅子 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000097_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:mosp"/>
    <sec:identifier>JVNDB-2012-000097</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000096:MosP&#21220;&#24608;&#31649;&#29702;&#12471;&#12473;&#12486;&#12512;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000096_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000096_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000096_AD_1.html</id>
    <published>2012-11-02T12:00:31+09:00</published>
    <updated>2012-11-02T12:00:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MosP勤怠管理システムには、アクセス制限不備の脆弱性が存在します。  株式会社マインドが提供する MosP勤怠管理システムは、オープンソースの勤怠管理システムです。MosP勤怠管理システムには、アクセス制限不備の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 大野 雅子 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000096_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:mosp"/>
    <sec:identifier>JVNDB-2012-000096</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5417:prime_data_center_network_manager: Cisco Prime Data Center Network Manager (DCNM) befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5417_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5417_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5417_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-02T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cisco Prime Data Center Network Manager (DCNM) before 6.1(1) does not properly restrict access to certain JBoss MainDeployer functionality, which allows remote attackers to execute arbitrary commands via JBoss Application Server Remote Method Invocation (RMI) services, aka Bug ID CSCtz44924.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5417_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.1%282%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.1%283%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.1%284%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.1%285%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.2%281%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:4.2%283%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.0%282%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.0%283%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.1%281%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.1%282%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.1%283u%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.2%282%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.2%282a%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.2%282b%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.2%282c%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:5.2%282e%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:6.1%281a%29"/>
    <category term="cpe:/a:cisco:prime_data_center_network_manager:6.1%281b%29"/>
    <sec:identifier>CVE-2012-5417</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5416:unified_meetingplace: Buffer overflow in Cisco Unified MeetingPlace Web C...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5416_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5416_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5416_AD_1.html</id>
    <published>2012-11-02T00:00:00+09:00</published>
    <updated>2012-11-02T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Cisco Unified MeetingPlace Web Conferencing before 7.1MR1 Patch 1, 8.0 before 8.0MR1 Patch 1, and 8.5 before 8.5MR3 allows remote attackers to cause a denial of service (daemon hang) via unspecified parameters in a POST request, aka Bug ID CSCua66341.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5416_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0.1"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0.2"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0.2:mr1"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0.3"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.0.3:mr2"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.1"/>
    <category term="cpe:/a:cisco:unified_meetingplace:7.1:mr1 and previous versions"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.0"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.0:mr1"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.5"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.5.1"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.5.2"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.5.3"/>
    <category term="cpe:/a:cisco:unified_meetingplace:8.5.4"/>
    <sec:identifier>CVE-2012-5416</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005170:Invision Power Board &#12398; admin/sources/base/core.php &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005170_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005170_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005170_AD_1.html</id>
    <published>2012-11-01T11:55:05+09:00</published>
    <updated>2012-11-01T11:55:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Invision Power Board の admin/sources/base/core.php には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005170_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:invision_power_services:invision_power_board"/>
    <sec:identifier>JVNDB-2012-005170</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005169:EMC Avamar Client for VMware &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005169_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005169_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005169_AD_1.html</id>
    <published>2012-11-01T11:54:32+09:00</published>
    <updated>2012-11-01T11:54:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC Avamar Client for VMware は、サーバルートパスワードを平文でプロキシクライアント上に保存するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005169_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:avamar"/>
    <sec:identifier>JVNDB-2012-005169</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005168:AWStats &#12398; awredir.pl &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005168_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005168_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005168_AD_1.html</id>
    <published>2012-11-01T11:53:58+09:00</published>
    <updated>2012-11-01T11:53:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
AWStats の awredir.pl には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005168_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:awstats:awstats"/>
    <sec:identifier>JVNDB-2012-005168</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005191:VideoLAN VLC media player &#12398; modules/demux/ty.c &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005191_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005191_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005191_AD_1.html</id>
    <published>2012-11-01T11:53:31+09:00</published>
    <updated>2012-11-01T11:53:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VideoLAN VLC media player の modules/demux/ty.c の get_chunk_header 関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態となる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005191_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player"/>
    <sec:identifier>JVNDB-2011-005191</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5705:hotblocks: Cross-site scripting (XSS) vulnerability in the set...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5705_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5705_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5705_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the settings page (admin/settings/hotblocks) in the Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the &quot;administer hotblocks&quot; permission to inject arbitrary web script or HTML via the &quot;block names.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5705_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.5"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.6"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.7"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5705</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5704:hotblocks: The Hotblocks module 6.x-1.x before 6.x-1.8 for Dru...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5704_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5704_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5704_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the &quot;administer hotblocks&quot; permission to cause a denial of service (infinite loop and time out) via a block that references itself.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5704_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.5"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.6"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.7"/>
    <category term="cpe:/a:justin_dodge:hotblocks:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-5704</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5687:tl-wr841n, tl-wr841n_firmware: Directory traversal vulnerability in the web-based ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5687_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5687_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5687_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the web-based management feature on the TP-LINK TL-WR841N router with firmware 3.13.9 build 120201 Rel.54965n and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to the help/ URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5687_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:tp-link:tl-wr841n:-"/>
    <category term="cpe:/o:tp-link:tl-wr841n_firmware:3.13.9 and previous versions"/>
    <sec:identifier>CVE-2012-5687</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5409:sipass_integrated: AscoServer.exe in the server in Siemens SiPass inte...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5409_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5409_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5409_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5409_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:siemens:sipass_integrated:mp2.6 and previous versions"/>
    <sec:identifier>CVE-2012-5409</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3026:intelligent_platforms_proficy_real-time_information_portal: rifsrvd.exe in the Remote Interface Service in GE I...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3026_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3026_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3026_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3010 and CVE-2012-3021.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3026_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:2.6"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0:sp1"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5:sp1"/>
    <sec:identifier>CVE-2012-3026</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3021:intelligent_platforms_proficy_real-time_information_portal: rifsrvd.exe in the Remote Interface Service in GE I...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3021_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3021_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3021_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3010 and CVE-2012-3026.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3021_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:2.6"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0:sp1"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5:sp1"/>
    <sec:identifier>CVE-2012-3021</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3010:intelligent_platforms_proficy_real-time_information_portal: rifsrvd.exe in the Remote Interface Service in GE I...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3010_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3010_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3010_AD_1.html</id>
    <published>2012-11-01T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3021 and CVE-2012-3026.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3010_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:2.6"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.0:sp1"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5"/>
    <category term="cpe:/a:ge:intelligent_platforms_proficy_real-time_information_portal:3.5:sp1"/>
    <sec:identifier>CVE-2012-3010</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4940:axigen_free_mail_server: Multiple directory traversal vulnerabilities in the...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4940_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4940_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4940_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple directory traversal vulnerabilities in the View Log Files component in Axigen Free Mail Server allow remote attackers to read or delete arbitrary files via a .. (dot dot) in (1) the fileName parameter in a download action to source/loggin/page_log_dwn_file.hsp, or the fileName parameter in (2) an edit action or (3) a delete action to the default URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4940_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gecad:axigen_free_mail_server:-"/>
    <sec:identifier>CVE-2012-4940</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4939:ip_address_manager_web_interface, orion_network_performance_monitor: Cross-site scripting (XSS) vulnerability in IPAMSum...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4939_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4939_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4939_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in IPAMSummaryView.aspx in the IPAM web interface before 3.0-HotFix1 in SolarWinds Orion Network Performance Monitor might allow remote attackers to inject arbitrary web script or HTML via the &quot;Search for an IP address&quot; field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4939_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:solarwinds:ip_address_manager_web_interface:3.0 and previous versions"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:-"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.0"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.1"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.1.13.0"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.2"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.2.1"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.2.2"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.3"/>
    <category term="cpe:/a:solarwinds:orion_network_performance_monitor:10.3.1"/>
    <sec:identifier>CVE-2012-4939</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5671:exim: Heap-based buffer overflow in the dkim_exim_query_d...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5671_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5671_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5671_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the dkim_exim_query_dns_txt function in dkim.c in Exim 4.70 through 4.80, when DKIM support is enabled and acl_smtp_connect and acl_smtp_rcpt are not set to &quot;warn control = dkim_disable_verify,&quot; allows remote attackers to execute arbitrary code via an email from a malicious DNS server.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5671_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:exim:exim:4.70"/>
    <category term="cpe:/a:exim:exim:4.71"/>
    <category term="cpe:/a:exim:exim:4.72"/>
    <category term="cpe:/a:exim:exim:4.73"/>
    <category term="cpe:/a:exim:exim:4.74"/>
    <category term="cpe:/a:exim:exim:4.75"/>
    <category term="cpe:/a:exim:exim:4.76"/>
    <category term="cpe:/a:exim:exim:4.77"/>
    <category term="cpe:/a:exim:exim:4.80"/>
    <sec:identifier>CVE-2012-5671</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4544:xen: The PV domain builder in Xen 4.2 and earlier does n...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4544_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4544_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4544_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators to cause a denial of service (domain 0 memory consumption) via a crafted (a) kernel or (b) ramdisk.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4544_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0 and previous versions"/>
    <sec:identifier>CVE-2012-4544</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4532:joomla!: Cross-site scripting (XSS) vulnerability in modules...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4532_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4532_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4532_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.  NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4532_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:2.5.0"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.1"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.2"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.3"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.4"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.5"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.6"/>
    <sec:identifier>CVE-2012-4532</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4531:joomla!: Cross-site scripting (XSS) vulnerability in Joomla!...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4531_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4531_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4531_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4531_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:2.5.0"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.1"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.2"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.3"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.4"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.5"/>
    <category term="cpe:/a:joomla:joomla%21:2.5.6"/>
    <sec:identifier>CVE-2012-4531</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4500:announcements: The Announcements module 6.x-1.x before 6.x-1.5 for...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4500_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4500_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4500_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Announcements module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the &quot;access announcements&quot; permission to bypass node access restrictions and possibly have other unspecified impact.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4500_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.0"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.0:beta"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.1"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.2"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.3"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.4"/>
    <category term="cpe:/a:nancy_wichmann:announcements:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4500</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4499:email: The contact formatter page in the Email Field modul...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4499_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4499_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4499_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The contact formatter page in the Email Field module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.1 for Drupal allows remote attackers to email the stored address in the entity via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4499_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:matthias_hutterer:email:6.x-1.0"/>
    <category term="cpe:/a:matthias_hutterer:email:6.x-1.1"/>
    <category term="cpe:/a:matthias_hutterer:email:6.x-1.x:dev"/>
    <category term="cpe:/a:matthias_hutterer:email:7.x-1.0"/>
    <category term="cpe:/a:matthias_hutterer:email:7.x-1.0:alpha1"/>
    <category term="cpe:/a:matthias_hutterer:email:7.x-1.0:alpha2"/>
    <category term="cpe:/a:matthias_hutterer:email:7.x-1.0:beta1"/>
    <category term="cpe:/a:matthias_hutterer:email:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4499</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4496:custom_pub: Cross-site scripting (XSS) vulnerability in the Cus...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4496_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4496_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4496_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Custom Publishing Options module 6.x-1.x before 6.x-1.4 for Drupal allows remote authenticated users with the &quot;administer nodes&quot; permission to inject arbitrary web script or HTML via the status labels parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4496_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.0"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.0:beta1"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.1"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.2"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.3"/>
    <category term="cpe:/a:inclind:custom_pub:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4496</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4495:mimemail: The Mime Mail module 6.x-1.x before 6.x-1.1 for Dru...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4495_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4495_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4495_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Mime Mail module 6.x-1.x before 6.x-1.1 for Drupal does not properly restrict access to files outside Drupal's publish files directory, which allows remote authenticated users to send arbitrary files as attachments.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4495_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha1"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha2"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha3"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha4"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha5"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha6"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha7"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:alpha8"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:beta1"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.0:beta2"/>
    <category term="cpe:/a:mime_mail_module_project:mimemail:6.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4495</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4494:shibb_auth: The Shibboleth authentication module 7.x-4.0 for Dr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4494_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4494_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4494_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Shibboleth authentication module 7.x-4.0 for Drupal does not properly check the active status of users, which allows remote blocked users to access bypass intended access restrictions and possibly have other impacts by logging in.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4494_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:niif:shibb_auth:7.x-4.0"/>
    <sec:identifier>CVE-2012-4494</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4492:shorten: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4492_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4492_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4492_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the Shorten URLs module 6.x-1.x before 6.x-1.13 and 7.x-1.x before 7.x-1.2 for Drupal allow remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors to the (1) report or (2) Custom Services List page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4492_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.0"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.1"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.10"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.11"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.12"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.2"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.3"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.4"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.5"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.6"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.7"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.8"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.9"/>
    <category term="cpe:/a:isaac_sukin:shorten:6.x-1.x:dev"/>
    <category term="cpe:/a:isaac_sukin:shorten:7.x-1.0"/>
    <category term="cpe:/a:isaac_sukin:shorten:7.x-1.0:rc1"/>
    <category term="cpe:/a:isaac_sukin:shorten:7.x-1.1"/>
    <category term="cpe:/a:isaac_sukin:shorten:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4492</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4491:monthly_archive_by_node_type: The Monthly Archive by Node Type module 6.x for Dru...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4491_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4491_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4491_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Monthly Archive by Node Type module 6.x for Drupal does not properly check permissions defined by node_access modules, which allows remote attackers to access restricted nodes via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4491_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:earl_dunovant:monthly_archive_by_node_type:6.x-1.0"/>
    <category term="cpe:/a:earl_dunovant:monthly_archive_by_node_type:6.x-2.0"/>
    <category term="cpe:/a:earl_dunovant:monthly_archive_by_node_type:6.x-3.0"/>
    <sec:identifier>CVE-2012-4491</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4490:excluded_users: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4490_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4490_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4490_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the Excluded Users module 6.x-1.x before 6.x-1.1 for Drupal allow remote attackers to inject arbitrary web script or HTML via a (1) user name or (2) email address.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4490_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:ricky_morse:excluded_users:6.x-1.0"/>
    <sec:identifier>CVE-2012-4490</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4489:securelogin: Open redirect vulnerability in the securelogin_secu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4489_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4489_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4489_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Open redirect vulnerability in the securelogin_secure_redirect function in the Secure Login module 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4489_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:mark_burdett:securelogin:7.x-1.0"/>
    <category term="cpe:/a:mark_burdett:securelogin:7.x-1.1"/>
    <category term="cpe:/a:mark_burdett:securelogin:7.x-1.2"/>
    <category term="cpe:/a:mark_burdett:securelogin:7.x-1.x:dev"/>
    <sec:identifier>CVE-2012-4489</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4488:location: The Location module 6.x before 6.x-3.2 and 7.x befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4488_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4488_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4488_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Location module 6.x before 6.x-3.2 and 7.x before 7.x-3.0-alpha1 for Drupal does not properly check user or node access permissions, which allows remote attackers to read node or user results via the location search page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4488_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.0"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.0:rc1"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.0:rc2"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.0:test3"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.1"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.1:rc1"/>
    <category term="cpe:/a:location_module_project:location:6.x-3.x:dev"/>
    <category term="cpe:/a:location_module_project:location:7.x-1.0:beta1"/>
    <category term="cpe:/a:location_module_project:location:7.x-3.x:dev"/>
    <category term="cpe:/a:location_module_project:location:7.x-4.x:dev"/>
    <category term="cpe:/a:location_module_project:location:7.x-5.x:dev"/>
    <sec:identifier>CVE-2012-4488</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4485:galleryformatter: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4485_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4485_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4485_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in the galleryformatter_field_formatter_view functiuon in galleryformatter.tpl.php the Gallery formatter module before 7.x-1.2 for Drupal allow remote authenticated users with permissions to create a node or entity to inject arbitrary web script or HTML via the (1) title or (2) alt parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4485_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:6.x-1.0:rc1"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:6.x-1.0:rc2"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:6.x-1.0:rc3"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:6.x-1.0:rc4"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:6.x-1.x:dev"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:7.x-1.0"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:7.x-1.1 and previous versions"/>
    <category term="cpe:/a:manuel_garcia:galleryformatter:7.x-1.x-dev"/>
    <sec:identifier>CVE-2012-4485</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4484:campaignmonitor: Cross-site scripting (XSS) vulnerability in the adm...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4484_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4484_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4484_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the administrative interface in the Campaign Monitor module before 6.x-2.5 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4484_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-1.1"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-1.x-dev"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-2.1"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-2.2"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-2.3"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-2.4 and previous versions"/>
    <category term="cpe:/a:trexart:campaignmonitor:6.x-2.x:dev"/>
    <sec:identifier>CVE-2012-4484</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4483:commons: The commons_discussion_views_default_views function...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4483_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4483_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4483_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The commons_discussion_views_default_views function in modules/features/commons_discussion/commons_discussion.views_default.inc in the Drupal Commons module 6.x-2.x before 6.x-2.8 for Drupal does not properly enforce intended node access restrictions, which might allow remote attackers to obtain sensitive information via the recent comments listing.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4483_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:acquia:commons:6.x-2.4"/>
    <category term="cpe:/a:acquia:commons:6.x-2.5"/>
    <category term="cpe:/a:acquia:commons:6.x-2.6"/>
    <category term="cpe:/a:acquia:commons:6.x-2.7"/>
    <category term="cpe:/a:acquia:commons:6.x-2.x:dev"/>
    <category term="cpe:/a:drupal:drupal:-"/>
    <sec:identifier>CVE-2012-4483</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4482:ubercart_securetrading_payment_method_module: The Ubercart SecureTrading Payment Method module 6....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4482_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4482_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4482_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Ubercart SecureTrading Payment Method module 6.x for Drupal does not properly verify payment notification information, which allows remote attackers to purchase an item without paying via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4482_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:drupal:drupal:-"/>
    <category term="cpe:/a:longwaveconsulting:ubercart_securetrading_payment_method_module:6.x-1.0"/>
    <sec:identifier>CVE-2012-4482</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2625:xen: The PyGrub boot loader in Xen unstable before chang...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2625_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2625_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2625_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-11-01T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x allows local para-virtualized guest users to cause a denial of service (memory consumption) via a large (1) bzip2 or (2) lzma compressed kernel image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2625_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:xen:xen:25588:42f76d536b11:-:unstable and previous versions"/>
    <category term="cpe:/o:xen:xen:4.1.0"/>
    <category term="cpe:/o:xen:xen:4.1.1"/>
    <category term="cpe:/o:xen:xen:4.1.2"/>
    <category term="cpe:/o:xen:xen:4.1.3"/>
    <category term="cpe:/o:xen:xen:4.2.0"/>
    <sec:identifier>CVE-2012-2625</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005167:TomatoCart &#12398; PayPal Express Checkout &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#26908;&#35388;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005167_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005167_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005167_AD_1.html</id>
    <published>2012-10-31T17:06:05+09:00</published>
    <updated>2012-10-31T17:06:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TomatoCart の PayPal Express Checkout モジュールには、検証不備の脆弱性が存在します。  TomatoCart の PayPal Express Checkout モジュールには、決済に関する情報の検証に不備が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005167_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomatocart:tomatocart"/>
    <sec:identifier>JVNDB-2012-005167</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005166:&#35079;&#25968;&#12398; Cisco &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12496;&#12452;&#12473;&#12522;&#12525;&#12540;&#12489;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005166_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005166_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005166_AD_1.html</id>
    <published>2012-10-31T15:47:12+09:00</published>
    <updated>2012-10-31T15:47:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する DCERPC インスペクションエンジン、Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM)、Cisco Catalyst 6500 シリーズスイッチおよび 7600 シリーズルータの Firewall Services Module (FWSM) には、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug IDs CSCtr21346 および CSCtr27521 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005166_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <category term="cpe:/o:cisco:firewall_services_module_software"/>
    <sec:identifier>JVNDB-2012-005166</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005165:&#35079;&#25968;&#12398; Cisco &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12496;&#12452;&#12473;&#12522;&#12525;&#12540;&#12489;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005165_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005165_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005165_AD_1.html</id>
    <published>2012-10-31T15:45:28+09:00</published>
    <updated>2012-10-31T15:45:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する DCERPC インスペクションエンジン、Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM)、Cisco Catalyst 6500 シリーズスイッチおよび 7600 シリーズルータの Firewall Services Module (FWSM) には、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug IDs CSCtr21376 および CSCtr27524 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005165_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <category term="cpe:/o:cisco:firewall_services_module_software"/>
    <sec:identifier>JVNDB-2012-005165</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005164:&#35079;&#25968;&#12398; Cisco &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005164_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005164_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005164_AD_1.html</id>
    <published>2012-10-31T15:39:53+09:00</published>
    <updated>2012-10-31T15:39:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する DCERPC インスペクションエンジン、Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM)、Cisco Catalyst 6500 シリーズスイッチおよび 7600 シリーズルータの Firewall Services Module (FWSM) には、スタックベースのバッファオーバーフローの脆弱性が存在します。  本問題は、Bug IDs CSCtr21359 および CSCtr27522 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005164_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <category term="cpe:/o:cisco:firewall_services_module_software"/>
    <sec:identifier>JVNDB-2012-005164</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005163:Cisco ASA 5500 &#12471;&#12522;&#12540;&#12474;&#12362;&#12424;&#12403; Catalyst 6500 &#12471;&#12522;&#12540;&#12474;&#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005163_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005163_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005163_AD_1.html</id>
    <published>2012-10-31T15:31:02+09:00</published>
    <updated>2012-10-31T15:31:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する SIP インスペクションエンジン、および Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM) には、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug ID CSCtr63728 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005163_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <sec:identifier>JVNDB-2012-005163</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005162:Cisco ASA 5500 &#12471;&#12522;&#12540;&#12474;&#12362;&#12424;&#12403; Catalyst 6500 &#12471;&#12522;&#12540;&#12474;&#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005162_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005162_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005162_AD_1.html</id>
    <published>2012-10-31T15:30:05+09:00</published>
    <updated>2012-10-31T15:30:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する IPv4 SSL VPN の実装における AAA (認証、許可、アカウンティング) 機能、および Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM) には、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug ID CSCtz04566 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005162_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <sec:identifier>JVNDB-2012-005162</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005161:Cisco ASA 5500 &#12471;&#12522;&#12540;&#12474;&#12362;&#12424;&#12403; Catalyst 6500 &#12471;&#12522;&#12540;&#12474;&#12487;&#12496;&#12452;&#12473;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005161_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005161_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005161_AD_1.html</id>
    <published>2012-10-31T15:29:01+09:00</published>
    <updated>2012-10-31T15:29:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco Adaptive Security Appliances (ASA) 5500 シリーズデバイス上で稼働する DHCP サーバ、および Cisco Catalyst 6500 シリーズデバイスの ASA Services Module (ASASM) は、DHCP パケット用メモリの割り当てを適切に行わないため、サービス運用妨害 (デバイスリロード) 状態となる脆弱性が存在します。  本問題は、Bug ID CSCtw84068 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005161_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e"/>
    <category term="cpe:/h:cisco:catalyst_6504-e"/>
    <category term="cpe:/h:cisco:catalyst_6506-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-e"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e"/>
    <category term="cpe:/h:cisco:catalyst_6513"/>
    <category term="cpe:/h:cisco:catalyst_6513-e"/>
    <sec:identifier>JVNDB-2012-005161</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000095:Mac OS X &#12398; OpenSSH &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_1.html</id>
    <published>2012-10-31T14:01:29+09:00</published>
    <updated>2012-10-31T14:01:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で動作する OpenSSH には、サービス運用妨害 (DoS) の脆弱性が存在します。  Mac OS X 上で動作する OpenSSH には、サービス運用妨害 (DoS) の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者:株式会社アピリッツ サイバーセキュリティラボ 片山 昌樹 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>JVNDB-2012-000095</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]JVNDB-2012-000095:Mac OS X &#12398; OpenSSH &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_2.html</id>
    <published>2012-10-31T14:01:29+09:00</published>
    <updated>2012-10-31T14:01:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mac OS X 上で動作する OpenSSH には、サービス運用妨害 (DoS) の脆弱性が存在します。  Mac OS X 上で動作する OpenSSH には、サービス運用妨害 (DoS) の脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者:株式会社アピリッツ サイバーセキュリティラボ 片山 昌樹 氏  JPCERT/CC からの補足情報 本脆弱性対策情報の JVN 公表は、製品開発者が対応した時点から遅れ 2012/10/31 となりました。 迅速な JVN 公表を目指した 2010年度「情報システム等の脆弱性情報の取扱いに関する研究会」の提言を受け、2011年度より JPCERT/CC は新たな手順に従って製品開発者との調整を進めています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000095_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:apple:mac_os_x"/>
    <sec:identifier>JVNDB-2012-000095</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005160:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#21516;&#19968;&#29983;&#25104;&#20803;&#12509;&#12522;&#12471;&#12540;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005160_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005160_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005160_AD_1.html</id>
    <published>2012-10-31T11:40:48+09:00</published>
    <updated>2012-10-31T11:40:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、同一生成元ポリシー (Same Origin Policy) を回避され、Location オブジェクトを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005160_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005160</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005159:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; nsLocation::CheckURL &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005159_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005159_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005159_AD_1.html</id>
    <published>2012-10-31T11:38:31+09:00</published>
    <updated>2012-10-31T11:38:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsLocation::CheckURL 関数は、戻り値の呼び出し元のドキュメントおよびプリンシパルを適切に判断しないため、クロスサイトスクリプティング攻撃を実行される、および任意の JavaScript コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005159_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005159</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005158:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005158_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005158_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005158_AD_1.html</id>
    <published>2012-10-31T11:25:56+09:00</published>
    <updated>2012-10-31T11:25:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、location オブジェクトをシャドウ (shadow) する valueOf メソッドの利用を制限しないため、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005158_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-005158</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5692:invision_power_board: Unspecified vulnerability in admin/sources/base/cor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5692_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5692_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5692_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-10-31T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in admin/sources/base/core.php in Invision Power Board (aka IPB or IP.Board) 3.1.x through 3.3.x has unknown impact and remote attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5692_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:invisionpower:invision_power_board:3.1.0"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.1.1"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.1.2"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.1.3"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.1.4"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.2.0"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.2.1"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.2.2"/>
    <category term="cpe:/a:invisionpower:invision_power_board:3.3.0"/>
    <sec:identifier>CVE-2012-5692</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4934:tomatocart: TomatoCart 1.1.7, when the PayPal Express Checkout ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4934_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4934_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4934_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-10-31T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
TomatoCart 1.1.7, when the PayPal Express Checkout module is enabled in sandbox mode, allows remote authenticated users to bypass intended payment requirements by modifying a certain redirection URL.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4934_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tomatocart:tomatocart:1.1.7"/>
    <sec:identifier>CVE-2012-4934</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4610:avamar: EMC Avamar Client for VMware 6.1 stores the clearte...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4610_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4610_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4610_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-10-31T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
EMC Avamar Client for VMware 6.1 stores the cleartext server root password on the proxy client, which might allow remote attackers to obtain sensitive information by leveraging &quot;network access&quot; to the proxy client.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4610_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:avamar:6.1:-:%7E%7E%7Evmware%7E%7E"/>
    <sec:identifier>CVE-2012-4610</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4547:awstats: Unspecified vulnerability in awredir.pl in AWStats ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4547_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4547_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4547_AD_1.html</id>
    <published>2012-10-31T00:00:00+09:00</published>
    <updated>2012-10-31T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in awredir.pl in AWStats before 7.1 has unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4547_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:laurent_destailleur:awstats:1.0"/>
    <category term="cpe:/a:laurent_destailleur:awstats:2.1"/>
    <category term="cpe:/a:laurent_destailleur:awstats:2.23"/>
    <category term="cpe:/a:laurent_destailleur:awstats:2.24"/>
    <category term="cpe:/a:laurent_destailleur:awstats:3.0"/>
    <category term="cpe:/a:laurent_destailleur:awstats:3.1"/>
    <category term="cpe:/a:laurent_destailleur:awstats:3.2"/>
    <category term="cpe:/a:laurent_destailleur:awstats:4.0"/>
    <category term="cpe:/a:laurent_destailleur:awstats:4.1"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.0"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.1"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.2"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.3"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.4"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.5"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.6"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.7"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.8"/>
    <category term="cpe:/a:laurent_destailleur:awstats:5.9"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.0"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.1"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.2"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.3"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.4"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.5"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.6"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.7"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.8"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.9"/>
    <category term="cpe:/a:laurent_destailleur:awstats:6.95"/>
    <category term="cpe:/a:laurent_destailleur:awstats:7.0 and previous versions"/>
    <sec:identifier>CVE-2012-4547</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0023:vlc_media_player: Double free vulnerability in the get_chunk_header f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0023_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0023_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0023_AD_1.html</id>
    <published>2012-10-30T00:00:00+09:00</published>
    <updated>2012-10-31T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 through 1.1.12 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TiVo (TY) file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0023_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.10"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.8a"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.9"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.9a"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.10"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.10.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.11"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.12"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.4.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.6.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.7"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.8"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.9"/>
    <sec:identifier>CVE-2012-0023</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005157:LibTIFF &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005157_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005157_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005157_AD_1.html</id>
    <published>2012-10-30T10:19:16+09:00</published>
    <updated>2012-10-30T10:19:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
LibTIFF の tif_pixarlog.c には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005157_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libtiff:libtiff"/>
    <sec:identifier>JVNDB-2012-005157</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4663:5500_series_adaptive_security_appliance, 7600_router, adaptive_security_appliance...: The DCERPC inspection engine on Cisco Adaptive Secu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4663_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4663_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4663_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco Catalyst 6500 series switches and 7600 series routers allows remote attackers to cause a denial of service (device reload) via a crafted DCERPC packet, aka Bug IDs CSCtr21346 and ...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4663_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281.4%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4663</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4662:5500_series_adaptive_security_appliance, 7600_router, adaptive_security_appliance...: The DCERPC inspection engine on Cisco Adaptive Secu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4662_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4662_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4662_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco Catalyst 6500 series switches and 7600 series routers allows remote attackers to cause a denial of service (device reload) via a crafted DCERPC packet, aka Bug IDs CSCtr21376 and ...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4662_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281.4%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4662</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4661:5500_series_adaptive_security_appliance, 7600_router, adaptive_security_appliance...: Stack-based buffer overflow in the DCERPC inspectio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4661_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4661_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4661_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.34), 8.4 before 8.4(4.4), 8.5 before 8.5(1.13), and 8.6 before 8.6(1.3) and the Firewall Services Module (FWSM) 4.1 before 4.1(9) in Cisco Catalyst 6500 series switches and 7600 series routers might allow remote attackers to execute arbitrary code via a crafted DCER...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4661_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281.4%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6%281%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:7600_router"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4661</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4660:5500_series_adaptive_security_appliance, adaptive_security_appliance_software, ca...: The SIP inspection engine on Cisco Adaptive Securit...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4660_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4660_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4660_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.17), 8.3 before 8.3(2.28), 8.4 before 8.4(2.13), 8.5 before 8.5(1.4), and 8.6 before 8.6(1.5) allows remote attackers to cause a denial of service (device reload) via a crafted SIP media-update packet, aka Bug ID CSCtr63728.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4660_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283.9%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.1%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.4%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6%281%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4660</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4659:5500_series_adaptive_security_appliance, adaptive_security_appliance_software, ca...: The AAA functionality in the IPv4 SSL VPN implement...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4659_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4659_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4659_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.30) and 8.3 before 8.3(2.34) allows remote attackers to cause a denial of service (device reload) via a crafted authentication response, aka Bug ID CSCtz04566.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4659_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283.9%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.1%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.4%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4659</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4643:5500_series_adaptive_security_appliance, adaptive_security_appliance_software, ca...: The DHCP server on Cisco Adaptive Security Applianc...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4643_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4643_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4643_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 before 7.2(5.8), 7.1 before 7.2(5.8), 7.2 before 7.2(5.8), 8.0 before 8.0(5.28), 8.1 before 8.1(2.56), 8.2 before 8.2(5.27), 8.3 before 8.3(2.31), 8.4 before 8.4(3.10), 8.5 before 8.5(1.9), and 8.6 before 8.6(1.5) does not properly allocate memory for DHCP packets, which allows remote attackers to cause a denial of servic...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4643_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%280%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.0%285.2%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%282.27%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%282.48%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%282.49%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%282.5%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.1%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%281.22%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.10%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.14%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.15%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.16%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.17%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.18%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.19%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.48%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.5%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.7%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%282.8%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%283%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:7.2%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.0"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.0%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.0%283%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.0%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.0%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.1"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%283.9%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.1%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%284.4%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.2%285%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.3%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%281.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.4%282.11%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.5%281.4%29"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6"/>
    <category term="cpe:/a:cisco:adaptive_security_appliance_software:8.6%281%29"/>
    <category term="cpe:/h:cisco:5500_series_adaptive_security_appliance"/>
    <category term="cpe:/h:cisco:catalyst_6500"/>
    <category term="cpe:/h:cisco:catalyst_6503-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6504-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6506-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-neb-a:-"/>
    <category term="cpe:/h:cisco:catalyst_6509-v-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513-e:-"/>
    <category term="cpe:/h:cisco:catalyst_6513:-"/>
    <sec:identifier>CVE-2012-4643</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4196:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Mozilla Firefox before 16.0.2, Firefox ESR 10.x bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4196_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4196_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4196_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 allow remote attackers to bypass the Same Origin Policy and read the Location object via a prototype property-injection attack that defeats certain protection mechanisms for this object.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4196_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4196</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4195:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: The nsLocation::CheckURL function in Mozilla Firefo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4195_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4195_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4195_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The nsLocation::CheckURL function in Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 does not properly determine the calling document and principal in its return value, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site, and makes it easier for remote attackers to execute arbitrary JavaScript code by leveraging certain add-on ...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4195_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4195</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4194:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Mozilla Firefox before 16.0.2, Firefox ESR 10.x bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4194_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4194_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4194_AD_1.html</id>
    <published>2012-10-29T00:00:00+09:00</published>
    <updated>2012-10-30T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 do not prevent use of the valueOf method to shadow the location object (aka window.location), which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors involving a plugin.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4194_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:firefox:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13.1 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.9"/>
    <sec:identifier>CVE-2012-4194</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005156:VideoLAN VLC media player &#12398; libpng_plugin &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005156_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005156_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005156_AD_1.html</id>
    <published>2012-10-29T16:35:57+09:00</published>
    <updated>2012-10-29T16:35:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VideoLAN VLC media player の libpng_plugin には、サービス運用妨害 (アプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005156_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player"/>
    <sec:identifier>JVNDB-2012-005156</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005155:Wing FTP Server &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12487;&#12540;&#12514;&#12531;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005155_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005155_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005155_AD_1.html</id>
    <published>2012-10-29T16:33:25+09:00</published>
    <updated>2012-10-29T16:33:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Wing FTP Serverには、サービス運用妨害 (デーモンクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005155_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wftpserver:wing_ftp_server"/>
    <sec:identifier>JVNDB-2012-005155</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005154:Citrix Cloud.com CloudStack &#12362;&#12424;&#12403; Apache CloudStack pre-release &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; API &#12434;&#21628;&#12403;&#20986;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005154_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005154_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005154_AD_1.html</id>
    <published>2012-10-29T16:32:29+09:00</published>
    <updated>2012-10-29T16:32:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Citrix Cloud.com CloudStack および Apache CloudStack pre-release には、任意の API を呼び出される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005154_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:cloudstack"/>
    <category term="cpe:/a:citrix:cloudstack"/>
    <sec:identifier>JVNDB-2012-005154</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005153:mnoGoSearch &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005153_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005153_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005153_AD_1.html</id>
    <published>2012-10-29T16:31:05+09:00</published>
    <updated>2012-10-29T16:31:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
mnoGoSearch には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005153_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mnogosearch:mnogosearch"/>
    <sec:identifier>JVNDB-2012-005153</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005152:Social Network Community &#12398; user.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005152_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005152_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005152_AD_1.html</id>
    <published>2012-10-29T15:58:16+09:00</published>
    <updated>2012-10-29T15:58:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Social Network Community の user.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005152_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:scripte24shop:social_network_community"/>
    <sec:identifier>JVNDB-2012-005152</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005190:IrfanView &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005190_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005190_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005190_AD_1.html</id>
    <published>2012-10-29T15:56:34+09:00</published>
    <updated>2012-10-29T15:56:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IrfanView には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005190_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:irfanview"/>
    <sec:identifier>JVNDB-2011-005190</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005151:IrfanView &#29992; FlashPix PlugIn &#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005151_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005151_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005151_AD_1.html</id>
    <published>2012-10-29T15:55:41+09:00</published>
    <updated>2012-10-29T15:55:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IrfanView 用 FlashPix PlugIn で使用される libfpx の jpeg/dectile.c の Free_All_Memory 関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態となる脆弱税が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005151_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:flashpix_plugin"/>
    <sec:identifier>JVNDB-2012-005151</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005189:VideoLAN VLC media player &#12398; modules/demux/ty.c &#12395;&#12362;&#12369;&#12427;&#12513;&#12514;&#12522;&#20108;&#37325;&#35299;&#25918;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005189_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005189_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005189_AD_1.html</id>
    <published>2012-10-29T15:53:04+09:00</published>
    <updated>2012-10-29T15:53:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
VideoLAN VLC media player の modules/demux/ty.c の get_chunk_header 関数には、メモリを二重に解放する不備があるため、サービス運用妨害 (クラッシュ) 状態にされる、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005189_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player"/>
    <sec:identifier>JVNDB-2011-005189</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005150:Seotoaster &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005150_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005150_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005150_AD_1.html</id>
    <published>2012-10-29T15:48:55+09:00</published>
    <updated>2012-10-29T15:48:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Seotoaster の seotoaster_core/application/models/LoginModel.php 内の selectUserIdByLoginPass 関数には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005150_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:seotoaster:seotoaster"/>
    <sec:identifier>JVNDB-2012-005150</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005149:appRain CMF &#12398; Forum &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005149_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005149_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005149_AD_1.html</id>
    <published>2012-10-29T15:47:55+09:00</published>
    <updated>2012-10-29T15:47:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
appRain CMF の Forum モジュール内の quickstart/profile/index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005149_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apprain:apprain"/>
    <sec:identifier>JVNDB-2012-005149</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005148:appRain CMF &#12398; Search &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005148_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005148_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005148_AD_1.html</id>
    <published>2012-10-29T15:46:54+09:00</published>
    <updated>2012-10-29T15:46:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
appRain CMF の Search モジュール (quickstart/search) には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005148_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apprain:apprain"/>
    <sec:identifier>JVNDB-2012-005148</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005188:Enterasys Network Management Suite &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005188_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005188_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005188_AD_1.html</id>
    <published>2012-10-29T15:46:00+09:00</published>
    <updated>2012-10-29T15:46:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Enterasys Network Management Suite (NMS) の Syslog サービス (nssyslogd.exe) には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005188_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:enterasys:netsight"/>
    <category term="cpe:/h:enterasys:netsight"/>
    <sec:identifier>JVNDB-2011-005188</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005147:WordPress &#29992; Sentinel &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005147_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005147_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005147_AD_1.html</id>
    <published>2012-10-29T15:43:36+09:00</published>
    <updated>2012-10-29T15:43:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Sentinel プラグインの wordpress_sentinel.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005147_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trioniclabs:sentine"/>
    <sec:identifier>JVNDB-2012-005147</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005146:WordPress &#29992; Sentinel &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005146_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005146_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005146_AD_1.html</id>
    <published>2012-10-29T15:37:14+09:00</published>
    <updated>2012-10-29T15:37:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Sentinel プラグインの wordpress_sentinel.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005146_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trioniclabs:sentine"/>
    <sec:identifier>JVNDB-2012-005146</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005145:WordPress &#29992; Sentinel &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005145_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005145_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005145_AD_1.html</id>
    <published>2012-10-29T15:35:53+09:00</published>
    <updated>2012-10-29T15:35:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Sentinel プラグインには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005145_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trioniclabs:sentine"/>
    <sec:identifier>JVNDB-2012-005145</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005187:Cacti &#12398; logout.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005187_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005187_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005187_AD_1.html</id>
    <published>2012-10-29T15:25:09+09:00</published>
    <updated>2012-10-29T15:25:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cacti の logout.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005187_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cacti:cacti"/>
    <sec:identifier>JVNDB-2011-005187</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005144:PHP Flirt-Projekt &#12398; rub2_w.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005144_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005144_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005144_AD_1.html</id>
    <published>2012-10-29T15:22:41+09:00</published>
    <updated>2012-10-29T15:22:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PHP Flirt-Projekt の rub2_w.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005144_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:scripte24shop:php_flirt-projekt"/>
    <sec:identifier>JVNDB-2012-005144</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005025:WebSVN &#12398; svnlook.php &#20869;&#12398; getLog &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005025_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005025_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005025_AD_1.html</id>
    <published>2012-10-29T15:19:35+09:00</published>
    <updated>2012-10-29T15:19:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WebSVN の svnlook.php 内の getLog 関数には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005025_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:websvn:websvn"/>
    <sec:identifier>JVNDB-2010-005025</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005143:PHP-SCMS &#12398; templates/default/Admin/Login.html &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005143_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005143_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005143_AD_1.html</id>
    <published>2012-10-29T15:18:50+09:00</published>
    <updated>2012-10-29T15:18:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
PHP-SCMS の templates/default/Admin/Login.html には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005143_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cristopher_shi:php-scms"/>
    <sec:identifier>JVNDB-2012-005143</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005142:mPDF &#12398; examples/show_code.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005142_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005142_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005142_AD_1.html</id>
    <published>2012-10-29T15:18:13+09:00</published>
    <updated>2012-10-29T15:18:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
mPDF の examples/show_code.php には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005142_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mpdf1:mpdf"/>
    <sec:identifier>JVNDB-2012-005142</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005141:DotA OpenStats &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005141_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005141_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005141_AD_1.html</id>
    <published>2012-10-29T15:17:07+09:00</published>
    <updated>2012-10-29T15:17:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
DotA OpenStats には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005141_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neubivljiv:dota_openstats"/>
    <sec:identifier>JVNDB-2012-005141</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005186:&#26085;&#31435;&#12398; JP1/ServerConductor/DeploymentManager &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005186_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005186_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005186_AD_1.html</id>
    <published>2012-10-29T15:13:36+09:00</published>
    <updated>2012-10-29T15:13:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
日立の JP1/ServerConductor/DeploymentManager の PXE Mtftp サービスには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005186_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:jp1_serverconductor_deployment_manager"/>
    <category term="cpe:/a:hitachi:serverconductor_deployment_manager"/>
    <sec:identifier>JVNDB-2011-005186</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005140:WordPress &#29992; SCORM Cloud For WordPress &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005140_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005140_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005140_AD_1.html</id>
    <published>2012-10-29T15:05:54+09:00</published>
    <updated>2012-10-29T15:05:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 SCORM Cloud For WordPress プラグインの ajax.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005140_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:troyef:scorm_cloud"/>
    <sec:identifier>JVNDB-2012-005140</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005139:Video Community Portal &#12398; index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005139_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005139_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005139_AD_1.html</id>
    <published>2012-10-29T15:04:32+09:00</published>
    <updated>2012-10-29T15:04:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Video Community Portal の index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005139_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:2daybiz:video_community_portal_script"/>
    <sec:identifier>JVNDB-2012-005139</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005138:BrowserCRM &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005138_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005138_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005138_AD_1.html</id>
    <published>2012-10-29T15:03:44+09:00</published>
    <updated>2012-10-29T15:03:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
BrowserCRM には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005138_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:browsercrm:browsercrm"/>
    <sec:identifier>JVNDB-2012-005138</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005137:BrowserCRM &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005137_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005137_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005137_AD_1.html</id>
    <published>2012-10-29T15:02:53+09:00</published>
    <updated>2012-10-29T15:02:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
BrowserCRM には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005137_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:browsercrm:browsercrm"/>
    <sec:identifier>JVNDB-2012-005137</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005136:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005136_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005136_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005136_AD_1.html</id>
    <published>2012-10-29T11:47:20+09:00</published>
    <updated>2012-10-29T11:47:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、ヒープベースのバッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCtz72850 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005136_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005136</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005135:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005135_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005135_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005135_AD_1.html</id>
    <published>2012-10-29T11:46:22+09:00</published>
    <updated>2012-10-29T11:46:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCtz72958 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005135_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005135</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005134:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005134_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005134_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005134_AD_1.html</id>
    <published>2012-10-29T11:45:14+09:00</published>
    <updated>2012-10-29T11:45:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCua61331 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005134_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005134</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005133:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005133_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005133_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005133_AD_1.html</id>
    <published>2012-10-29T11:44:13+09:00</published>
    <updated>2012-10-29T11:44:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCtz73583 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005133_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005133</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005132:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005132_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005132_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005132_AD_1.html</id>
    <published>2012-10-29T11:39:16+09:00</published>
    <updated>2012-10-29T11:39:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCtz72967 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005132_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005132</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005131:Cisco WebEx Recording Format Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005131_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005131_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005131_AD_1.html</id>
    <published>2012-10-29T11:38:04+09:00</published>
    <updated>2012-10-29T11:38:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cisco WebEx Recording Format (WRF) Player には、バッファオーバーフローの脆弱性が存在します。  本問題は、Bug ID CSCua40962 の問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005131_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player"/>
    <sec:identifier>JVNDB-2012-005131</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4447:libtiff: Heap-based buffer overflow in tif_pixarlog.c in Lib...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4447_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4447_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4447_AD_1.html</id>
    <published>2012-10-28T00:00:00+09:00</published>
    <updated>2012-10-29T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF image using the PixarLog Compression format.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4447_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:libtiff:libtiff:3.4"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta18"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta24"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta28"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta29"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta31"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta32"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta34"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta35"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta36"/>
    <category term="cpe:/a:libtiff:libtiff:3.4:beta37"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.2"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.3"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.4"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.5"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.6"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.6:beta"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7:alpha"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7:alpha2"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7:alpha3"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7:alpha4"/>
    <category term="cpe:/a:libtiff:libtiff:3.5.7:beta"/>
    <category term="cpe:/a:libtiff:libtiff:3.6.0"/>
    <category term="cpe:/a:libtiff:libtiff:3.6.0:beta"/>
    <category term="cpe:/a:libtiff:libtiff:3.6.0:beta2"/>
    <category term="cpe:/a:libtiff:libtiff:3.6.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.0"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.0:alpha"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.0:beta"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.0:beta2"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.2"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.3"/>
    <category term="cpe:/a:libtiff:libtiff:3.7.4"/>
    <category term="cpe:/a:libtiff:libtiff:3.8.0"/>
    <category term="cpe:/a:libtiff:libtiff:3.8.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.8.2"/>
    <category term="cpe:/a:libtiff:libtiff:3.9"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.0"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.0:beta"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.2"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.2-5.2.1"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.3"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.4"/>
    <category term="cpe:/a:libtiff:libtiff:3.9.5"/>
    <category term="cpe:/a:libtiff:libtiff:4.0"/>
    <category term="cpe:/a:libtiff:libtiff:4.0.1"/>
    <category term="cpe:/a:libtiff:libtiff:4.0.2 and previous versions"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:alpha"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta1"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta2"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta3"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta4"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta5"/>
    <category term="cpe:/a:libtiff:libtiff:4.0:beta6"/>
    <sec:identifier>CVE-2012-4447</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005130:&#35079;&#25968;&#12398; DomainKeys Identified Mail (DKIM) &#23455;&#35013;&#12395;&#21839;&#38988;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005130_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005130_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005130_AD_1.html</id>
    <published>2012-10-26T12:22:32+09:00</published>
    <updated>2012-10-26T12:22:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の DomainKeys Identified Mail (DKIM) 実装において、テストモードが指定されているメッセージの扱いが仕様に反している例が報告されました。  DKIM 仕様では、DKIM ヘッダフィールドでテストモードの指定を行うことができます。 複数の DKIM 実装において、テストモードが指定されているメッセージの扱いが仕様に反している例が報告されました。  また、実運用環境において、1024ビット未満の RSA 鍵で DKIM 署名を行っている例も報告されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005130_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:multiple_vendors"/>
    <sec:identifier>JVNDB-2012-005130</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000093:&#26481;&#20140;BBS &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000093_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000093_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000093_AD_1.html</id>
    <published>2012-10-26T12:00:58+09:00</published>
    <updated>2012-10-26T12:00:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
東京BBS には、クロスサイトスクリプティングの脆弱性が存在します。  Come on Girls Interface が提供する東京BBS には、クロスサイトスクリプティングの脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: 津田尚彦 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000093_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:c61_tokyobbs"/>
    <sec:identifier>JVNDB-2012-000093</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005129:Microsoft Office 2007 &#12398; Excel 2007 &#12362;&#12424;&#12403; Microsoft Excel Viewer &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005129_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005129_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005129_AD_1.html</id>
    <published>2012-10-26T10:55:16+09:00</published>
    <updated>2012-10-26T10:55:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Office 2007 の Excel 2007 および Microsoft Excel Viewer (Xlview.exe) には、サービス運用妨害 (アクセス違反の読み込みおよびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005129_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office:2007"/>
    <sec:identifier>JVNDB-2012-005129</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005128:phpMyAdmin &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005128_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005128_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005128_AD_1.html</id>
    <published>2012-10-26T10:48:03+09:00</published>
    <updated>2012-10-26T10:48:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpMyAdmin には、SSL を利用しない phpmyadmin.net への HTTP セッションにより取得された JavaScript コード を用いることで、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005128_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin"/>
    <sec:identifier>JVNDB-2012-005128</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005127:phpMyAdmin &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005127_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005127_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005127_AD_1.html</id>
    <published>2012-10-26T10:45:32+09:00</published>
    <updated>2012-10-26T10:45:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpMyAdmin には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005127_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin"/>
    <sec:identifier>JVNDB-2012-005127</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005126:Apache Open For Business Project &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005126_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005126_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005126_AD_1.html</id>
    <published>2012-10-26T10:34:44+09:00</published>
    <updated>2012-10-26T10:34:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Open For Business Project には、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005126_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:open_for_business_project"/>
    <sec:identifier>JVNDB-2012-005126</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005125:HP/H3C &#35069;&#12362;&#12424;&#12403; Huawei &#35069;&#12493;&#12483;&#12488;&#12527;&#12540;&#12463;&#27231;&#22120;&#12395;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#19981;&#20633;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005125_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005125_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005125_AD_1.html</id>
    <published>2012-10-26T09:48:22+09:00</published>
    <updated>2012-10-26T09:48:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
HP/H3C 製および Huawei 製ネットワーク機器には、アクセス制限不備の脆弱性が存在します。  HP/H3C 製および Huawei 製ネットワーク機器には、SNMP リクエストの処理に問題があり、アクセス制限不備の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005125_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:misc:multiple_vendors"/>
    <sec:identifier>JVNDB-2012-005125</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5470:vlc_media_player: libpng_plugin in VideoLAN VLC media player 2.0.3 al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5470_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5470_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5470_AD_1.html</id>
    <published>2012-10-26T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
libpng_plugin in VideoLAN VLC media player 2.0.3 allows remote attackers to cause a denial of service (application crash) via a crafted PNG file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5470_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player:2.0.3"/>
    <sec:identifier>CVE-2012-5470</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4729:wing_ftp_server: Wing FTP Server before 4.1.1 allows remote authenti...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4729_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4729_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4729_AD_1.html</id>
    <published>2012-10-26T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Wing FTP Server before 4.1.1 allows remote authenticated users to cause a denial of service (daemon crash) via two zip commands.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4729_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.3"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.4"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:1.6"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:2.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:2.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:2.3"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:2.4"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.0.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.1.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.1.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.2.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.2.4"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.2.8"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.3.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.3.4"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.3.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.4.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.4.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.4.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.4.3"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.4.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.5.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.5.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.5.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.6.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.6.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.6.6"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.6.8"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.7.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.7.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.0"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.6"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.7"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.8"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:3.8.9"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.1"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.2"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.3"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.5"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.6"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.8"/>
    <category term="cpe:/a:wftpserver:wing_ftp_server:4.0.9 and previous versions"/>
    <sec:identifier>CVE-2012-4729</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4501:cloudstack: Citrix Cloud.com CloudStack, and Apache CloudStack ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4501_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4501_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4501_AD_1.html</id>
    <published>2012-10-26T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Citrix Cloud.com CloudStack, and Apache CloudStack pre-release, allows remote attackers to make arbitrary API calls by leveraging the system user account, as demonstrated by API calls to delete VMs.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4501_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:cloudstack:-:prerelease"/>
    <category term="cpe:/a:citrix:cloudstack:-"/>
    <sec:identifier>CVE-2012-4501</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4019:tokyo_bbs: Cross-site scripting (XSS) vulnerability in tokyo_b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4019_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4019_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4019_AD_1.html</id>
    <published>2012-10-26T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in tokyo_bbs.cgi in Come on Girls Interface (CGI) Tokyo BBS allows remote attackers to inject arbitrary web script or HTML via vectors related to the error page.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4019_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:c61:tokyo_bbs:-"/>
    <sec:identifier>CVE-2012-4019</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5235:mnogosearch: SQL injection vulnerability in mnoGoSearch before 3...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5235_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5235_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5235_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in mnoGoSearch before 3.3.12 allows remote attackers to execute arbitrary SQL commands via the hostname in a hypertext link.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5235_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.1.19"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.1.20"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.10"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.13"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.14"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.15"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.16"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.17"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.18"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.19"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.20"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.21"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.22"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.23"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.24"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.25"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.26"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.2.42"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.0"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.1"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.10"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.11"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.12"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.2"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.3"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.4"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.5"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.6"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.7"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.8"/>
    <category term="cpe:/a:mnogosearch:mnogosearch:3.3.9"/>
    <sec:identifier>CVE-2011-5235</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5234:social_network_community: SQL injection vulnerability in user.php in Social N...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5234_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5234_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5234_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in user.php in Social Network Community 2 allows remote attackers to execute arbitrary SQL commands via the userId parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5234_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:scripte24shop:social_network_community:2"/>
    <sec:identifier>CVE-2011-5234</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5233:irfanview: Heap-based buffer overflow in IrfanView before 4.32...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5233_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5233_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5233_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in IrfanView before 4.32 allows remote attackers to execute arbitrary code via crafted &quot;Rows Per Strip&quot; and &quot;Samples Per Pixel&quot; values in a TIFF image file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5233_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:irfanview:3.90"/>
    <category term="cpe:/a:irfanview:irfanview:3.91"/>
    <category term="cpe:/a:irfanview:irfanview:3.92"/>
    <category term="cpe:/a:irfanview:irfanview:3.95"/>
    <category term="cpe:/a:irfanview:irfanview:3.97"/>
    <category term="cpe:/a:irfanview:irfanview:3.98"/>
    <category term="cpe:/a:irfanview:irfanview:3.99"/>
    <category term="cpe:/a:irfanview:irfanview:4.00"/>
    <category term="cpe:/a:irfanview:irfanview:4.10"/>
    <category term="cpe:/a:irfanview:irfanview:4.20"/>
    <category term="cpe:/a:irfanview:irfanview:4.23"/>
    <category term="cpe:/a:irfanview:irfanview:4.25"/>
    <category term="cpe:/a:irfanview:irfanview:4.27"/>
    <category term="cpe:/a:irfanview:irfanview:4.28"/>
    <category term="cpe:/a:irfanview:irfanview:4.30 and previous versions"/>
    <sec:identifier>CVE-2011-5233</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5232:flashpix_plugin: Double free vulnerability in the Free_All_Memory fu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5232_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5232_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5232_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for IrfanView, allows remote attackers to cause a denial of service (crash) via a crafted FPX image.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5232_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:irfanview:flashpix_plugin:4.2.2.0"/>
    <sec:identifier>CVE-2011-5232</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5231:vlc_media_player: Double free vulnerability in the get_chunk_header f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5231_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5231_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5231_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 through 1.1.12 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TiVo (TY) file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5231_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.10"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.8a"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.9"/>
    <category term="cpe:/a:videolan:vlc_media_player:0.9.9a"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.0.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.0"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.10"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.10.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.11"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.12"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.2"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.3"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.4"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.4.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.5"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.6"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.6.1"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.7"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.8"/>
    <category term="cpe:/a:videolan:vlc_media_player:1.1.9"/>
    <sec:identifier>CVE-2011-5231</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5230:seotoaster: Multiple SQL injection vulnerabilities in the selec...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5230_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5230_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5230_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in the selectUserIdByLoginPass function in seotoaster_core/application/models/LoginModel.php in Seotoaster 1.9 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) login parameter to sys/login/index or (2) memberLoginName parameter to sys/login/member.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5230_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:seotoaster:seotoaster:1.8.2"/>
    <category term="cpe:/a:seotoaster:seotoaster:1.8.3"/>
    <category term="cpe:/a:seotoaster:seotoaster:1.9 and previous versions"/>
    <sec:identifier>CVE-2011-5230</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5229:apprain: SQL injection vulnerability in quickstart/profile/i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5229_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5229_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5229_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in quickstart/profile/index.php in the Forum module in appRain CMF 0.1.5 allows remote attackers to execute arbitrary SQL commands via the PATH_INFO.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5229_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apprain:apprain:0.1.5"/>
    <sec:identifier>CVE-2011-5229</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5228:apprain: Cross-site scripting (XSS) vulnerability in the Sea...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5228_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5228_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5228_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the Search module (quickstart/search) in appRain CMF 0.1.5 allows remote attackers to inject arbitrary web script or HTML via the ss parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5228_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apprain:apprain:0.1.5"/>
    <sec:identifier>CVE-2011-5228</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5227:netsight: Stack-based buffer overflow in the Syslog service (...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5227_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5227_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5227_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the Syslog service (nssyslogd.exe) in Enterasys Network Management Suite (NMS) before 4.1.0.80 allows remote attackers to execute arbitrary code via a long PRIO field in a message to UDP port 514.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5227_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:enterasys:netsight:4.1.0.79 and previous versions"/>
    <category term="cpe:/h:enterasys:netsight:4.1.0.79 and previous versions"/>
    <sec:identifier>CVE-2011-5227</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5226:sentinel: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5226_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5226_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5226_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to hijack the authentication of an administrator for requests that trigger snapshots.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5226_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boiteaweb:sentinel:1.0.0"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2011-5226</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5225:sentinel: Cross-site scripting (XSS) vulnerability in wordpre...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5225_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5225_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5225_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5225_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:boiteaweb:sentinel:1.0.0"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2011-5225</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5224:sentinel: SQL injection vulnerability in the Sentinel plugin ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5224_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5224_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5224_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5224_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:trioniclabs:sentinel:1.0.0"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2011-5224</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5223:cacti: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5223_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5223_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5223_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in logout.php in Cacti before 0.8.7i allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5223_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cacti:cacti:0.5"/>
    <category term="cpe:/a:cacti:cacti:0.6"/>
    <category term="cpe:/a:cacti:cacti:0.6.1"/>
    <category term="cpe:/a:cacti:cacti:0.6.2"/>
    <category term="cpe:/a:cacti:cacti:0.6.3"/>
    <category term="cpe:/a:cacti:cacti:0.6.4"/>
    <category term="cpe:/a:cacti:cacti:0.6.5"/>
    <category term="cpe:/a:cacti:cacti:0.6.6"/>
    <category term="cpe:/a:cacti:cacti:0.6.7"/>
    <category term="cpe:/a:cacti:cacti:0.6.8"/>
    <category term="cpe:/a:cacti:cacti:0.6.8a"/>
    <category term="cpe:/a:cacti:cacti:0.8"/>
    <category term="cpe:/a:cacti:cacti:0.8.1"/>
    <category term="cpe:/a:cacti:cacti:0.8.2"/>
    <category term="cpe:/a:cacti:cacti:0.8.3"/>
    <category term="cpe:/a:cacti:cacti:0.8.3a"/>
    <category term="cpe:/a:cacti:cacti:0.8.4"/>
    <category term="cpe:/a:cacti:cacti:0.8.5"/>
    <category term="cpe:/a:cacti:cacti:0.8.5a"/>
    <category term="cpe:/a:cacti:cacti:0.8.6"/>
    <category term="cpe:/a:cacti:cacti:0.8.6a"/>
    <category term="cpe:/a:cacti:cacti:0.8.6b"/>
    <category term="cpe:/a:cacti:cacti:0.8.6c"/>
    <category term="cpe:/a:cacti:cacti:0.8.6d"/>
    <category term="cpe:/a:cacti:cacti:0.8.6f"/>
    <category term="cpe:/a:cacti:cacti:0.8.6g"/>
    <category term="cpe:/a:cacti:cacti:0.8.6h"/>
    <category term="cpe:/a:cacti:cacti:0.8.6i"/>
    <category term="cpe:/a:cacti:cacti:0.8.6j"/>
    <category term="cpe:/a:cacti:cacti:0.8.6k"/>
    <category term="cpe:/a:cacti:cacti:0.8.7"/>
    <category term="cpe:/a:cacti:cacti:0.8.7a"/>
    <category term="cpe:/a:cacti:cacti:0.8.7b"/>
    <category term="cpe:/a:cacti:cacti:0.8.7c"/>
    <category term="cpe:/a:cacti:cacti:0.8.7d"/>
    <category term="cpe:/a:cacti:cacti:0.8.7e"/>
    <category term="cpe:/a:cacti:cacti:0.8.7f"/>
    <category term="cpe:/a:cacti:cacti:0.8.7g"/>
    <category term="cpe:/a:cacti:cacti:0.8.7h and previous versions"/>
    <sec:identifier>CVE-2011-5223</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5222:php_flirt-projekt: SQL injection vulnerability in rub2_w.php in PHP Fl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5222_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5222_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5222_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in rub2_w.php in PHP Flirt-Projekt 4.8 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the rub parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5222_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:scripte24shop:php_flirt-projekt:4.8"/>
    <sec:identifier>CVE-2011-5222</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5221:websvn: Cross-site scripting (XSS) vulnerability in the get...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5221_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5221_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5221_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the getLog function in svnlook.php in WebSVN before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the path parameter to (1) comp.php, (2) diff.php, or (3) revision.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5221_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:websvn:websvn:1.61"/>
    <category term="cpe:/a:websvn:websvn:2.0"/>
    <category term="cpe:/a:websvn:websvn:2.1.0"/>
    <category term="cpe:/a:websvn:websvn:2.2.0"/>
    <category term="cpe:/a:websvn:websvn:2.2.1"/>
    <category term="cpe:/a:websvn:websvn:2.3.0 and previous versions"/>
    <sec:identifier>CVE-2011-5221</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5220:php-scms: Cross-site scripting (XSS) vulnerability in templat...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5220_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5220_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5220_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in templates/default/Admin/Login.html in PHP-SCMS 1.6.8 and earlier allows remote attackers to inject arbitrary web script or HTML via the lang parameter to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5220_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cristopher_shi:php-scms:1.6.7"/>
    <category term="cpe:/a:cristopher_shi:php-scms:1.6.8 and previous versions"/>
    <sec:identifier>CVE-2011-5220</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5219:mpdf: Directory traversal vulnerability in examples/show_...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5219_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5219_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5219_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in examples/show_code.php in mPDF 5.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5219_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mpdf1:mpdf:5.2"/>
    <category term="cpe:/a:mpdf1:mpdf:5.3 and previous versions"/>
    <sec:identifier>CVE-2011-5219</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5218:dota_openstats: SQL injection vulnerability in DotA OpenStats 1.3.9...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5218_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5218_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5218_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in DotA OpenStats 1.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5218_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.1"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.1.9"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.1"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.2"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.3"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.4"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.5"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.6"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.7"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.8"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.2.9"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.0"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.1"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.2"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.3"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.4"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.5"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.6"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.7"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.8"/>
    <category term="cpe:/a:neubivljiv:dota_openstats:1.3.9 and previous versions"/>
    <sec:identifier>CVE-2011-5218</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5217:jp1/serverconductor/deploymentmanager: Directory traversal vulnerability in the PXE Mtftp ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5217_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5217_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5217_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in the PXE Mtftp service in Hitachi JP1/ServerConductor/DeploymentManager before 08-55 Japanese and before 08-51 English allows remote attackers to read arbitrary files via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5217_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-52:-:enterprise:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-52:-:standard:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-56-%2Fg%28%2A2%29:-:enterprise:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-56-%2Fg%28%2A2%29:-:standard:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-56:-:enterprise:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:07-56:-:standard:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-00:-:enterprise:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-00:-:standard:ja"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-06:-:enterprise:en"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-06:-:standard:en"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-07:-:enterprise:en and previous versions"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-07:-:standard:en and previous versions"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-50-%2Fb:-:enterprise:ja and previous versions"/>
    <category term="cpe:/a:hitachi:jp1%2Fserverconductor%2Fdeploymentmanager:08-50-%2Fb:-:standard:ja and previous versions"/>
    <category term="cpe:/a:hitachi:serverconductor%2Fdeploymentmanager:01-00:-:-:ja"/>
    <category term="cpe:/a:hitachi:serverconductor%2Fdeploymentmanager:01-01:-:-:ja"/>
    <category term="cpe:/a:hitachi:serverconductor%2Fdeploymentmanager:06-00-%2Fa:-:-:ja and previous versions"/>
    <category term="cpe:/a:hitachi:serverconductor%2Fdeploymentmanager:06-00:-:-:ja"/>
    <sec:identifier>CVE-2011-5217</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5216:scorm_cloud, wordpress: SQL injection vulnerability in ajax.php in SCORM Cl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5216_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5216_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5216_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in ajax.php in SCORM Cloud For WordPress plugin before 1.0.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the active parameter.  NOTE: some of these details are obtained from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5216_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:troyef:scorm_cloud:1.0"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.1"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.2"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.3"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.4"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.5"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.1"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.2"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.3"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.4"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.5"/>
    <category term="cpe:/a:troyef:scorm_cloud:1.0.6.6 and previous versions"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2011-5216</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5215:video_community_portal_script: SQL injection vulnerability in index.php in Video C...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5215_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5215_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5215_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in index.php in Video Community Portal allows remote attackers to execute arbitrary SQL commands via the id parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5215_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:2daybiz:video_community_portal_script:1.0"/>
    <sec:identifier>CVE-2011-5215</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5214:browsercrm: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5214_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5214_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5214_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in BrowserCRM 5.100.01 and earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php, (2) modules/admin/admin_module_index.php, or (3) modules/calendar/customise_calendar_times.php; login[] parameter to (4) index.php or (5) pub/clients.php; or framed parameter to (6) licence/index.php or (7) licence/view.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5214_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:browsercrm:browsercrm:4.604.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.605.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.607.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.610.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.611.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.612.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.614.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.615.10"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.615.11"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.616.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.617.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.619.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.620.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.622.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.50"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.60"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.70"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.80"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.90"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.691.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.999.20"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.000.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.000.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.001.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.002.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.100.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.100.01 and previous versions"/>
    <sec:identifier>CVE-2011-5214</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5213:browsercrm: Multiple SQL injection vulnerabilities in BrowserCR...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5213_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5213_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5213_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in BrowserCRM 5.100.01 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) login[username] parameter to index.php, (2) parent_id parameter to modules/Documents/version_list.php, or (3) contact_id parameter to modules/Documents/index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5213_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:browsercrm:browsercrm:4.604.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.605.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.607.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.610.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.611.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.612.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.614.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.615.10"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.615.11"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.616.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.617.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.619.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.620.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.622.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.50"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.60"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.70"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.80"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.624.90"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.691.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:4.999.20"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.000.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.000.01"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.001.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.002.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.100.00"/>
    <category term="cpe:/a:browsercrm:browsercrm:5.100.01 and previous versions"/>
    <sec:identifier>CVE-2011-5213</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3941:webex_recording_format_player: Heap-based buffer overflow in the Cisco WebEx Recor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3941_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3941_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3941_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72850.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3941_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3941</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3940:webex_recording_format_player: Buffer overflow in the Cisco WebEx Recording Format...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3940_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3940_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3940_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72958.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3940_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3940</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3939:webex_recording_format_player: Buffer overflow in the Cisco WebEx Recording Format...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3939_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3939_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3939_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted WRF file, aka Bug ID CSCua61331.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3939_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3939</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3938:webex_recording_format_player: Buffer overflow in the Cisco WebEx Recording Format...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3938_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3938_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3938_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz73583.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3938_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3938</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3937:webex_recording_format_player: Buffer overflow in the Cisco WebEx Recording Format...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3937_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3937_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3937_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72967.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3937_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3937</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3936:webex_recording_format_player: Buffer overflow in the Cisco WebEx Recording Format...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3936_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3936_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3936_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCua40962.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3936_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.11.26"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.21.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.25.10"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:27.32.1"/>
    <category term="cpe:/a:cisco:webex_recording_format_player:28.0.0"/>
    <sec:identifier>CVE-2012-3936</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>[Update]CVE-2012-4511:libsocialweb: services/flickr/flickr.c in libsocialweb before 0.2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_2.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_2.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_2.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-26T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
services/flickr/flickr.c in libsocialweb before 0.25.21 automatically connects to Flickr when no Flickr account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_2.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bastien_nocera:libsocialweb:0.25.7"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.0"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.11"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.12"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.14"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.15"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.16"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.17"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.18"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.2"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.3"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.4"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.6"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.8"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.9"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.1"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.10"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.13"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.19"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.20 and previous versions"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.5"/>
    <sec:identifier>CVE-2012-4511</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>2</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005124:Zoner AntiVirus Free application for Android &#12395;&#12362;&#12369;&#12427; SSL &#12469;&#12540;&#12496;&#12434;&#20605;&#35013;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005124_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005124_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005124_AD_1.html</id>
    <published>2012-10-25T15:04:43+09:00</published>
    <updated>2012-10-25T15:04:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Zoner AntiVirus Free application for Android は、サーバホスト名と X.509 証明書上の subject の Common Name (CN) フィールドのドメイン名を照合しないため、SSL サーバを偽装される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005124_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:zoner:zoner_antivirus_free"/>
    <sec:identifier>JVNDB-2012-005124</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005123:WordPress &#29992; White Label CMS &#12503;&#12521;&#12464;&#12452;&#12531;&#12398; wlcms-plugin.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005123_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005123_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005123_AD_1.html</id>
    <published>2012-10-25T15:03:55+09:00</published>
    <updated>2012-10-25T15:03:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 White Label CMS プラグインの wlcms-plugin.php には、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2012-5387 と関連する問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005123_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videousermanuals:white-label-cms"/>
    <sec:identifier>JVNDB-2012-005123</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005122:WordPress &#29992; White Label CMS &#12503;&#12521;&#12464;&#12452;&#12531;&#12398; wlcms-plugin.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005122_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005122_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005122_AD_1.html</id>
    <published>2012-10-25T14:16:37+09:00</published>
    <updated>2012-10-25T14:16:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 White Label CMS プラグインの wlcms-plugin.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005122_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videousermanuals:white-label-cms"/>
    <sec:identifier>JVNDB-2012-005122</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005121:TIBCO Formvine &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005121_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005121_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005121_AD_1.html</id>
    <published>2012-10-25T14:15:50+09:00</published>
    <updated>2012-10-25T14:15:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TIBCO Formvine のサーバは、アクセスコントロールを適切に実装していないため、重要な情報を取得される、またはデータを変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005121_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tibco:formvine"/>
    <sec:identifier>JVNDB-2012-005121</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005120:&#35079;&#25968;&#12398; Broadcom &#35069;&#28961;&#32218;&#12481;&#12483;&#12503;&#12475;&#12483;&#12488;&#12395;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005120_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005120_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005120_AD_1.html</id>
    <published>2012-10-25T14:03:28+09:00</published>
    <updated>2012-10-25T14:03:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Broadcom 製無線チップセットを使用する複数の製品には、サービス運用妨害 (DoS) の脆弱性が存在します。  Broadcom が提供する複数の無線チップセットのファームウェアには、サービス運用妨害 (DoS) の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005120_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:broadcom:bcm4325"/>
    <category term="cpe:/h:broadcom:bcm4329"/>
    <sec:identifier>JVNDB-2012-005120</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005119:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005119_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005119_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005119_AD_1.html</id>
    <published>2012-10-25T11:44:49+09:00</published>
    <updated>2012-10-25T11:44:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4172、CVE-2012-4173、CVE-2012-4174、および CVE-2012-4175 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005119_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005119</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005118:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005118_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005118_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005118_AD_1.html</id>
    <published>2012-10-25T11:44:20+09:00</published>
    <updated>2012-10-25T11:44:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、配列のインデックスエラーにより、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005118_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005118</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005117:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005117_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005117_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005117_AD_1.html</id>
    <published>2012-10-25T11:43:23+09:00</published>
    <updated>2012-10-25T11:43:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4172、CVE-2012-4173、CVE-2012-4174、および CVE-2012-5273 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005117_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005117</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005116:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005116_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005116_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005116_AD_1.html</id>
    <published>2012-10-25T11:42:46+09:00</published>
    <updated>2012-10-25T11:42:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4172、CVE-2012-4173、CVE-2012-4175、および CVE-2012-5273 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005116_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005116</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005115:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005115_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005115_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005115_AD_1.html</id>
    <published>2012-10-25T11:42:13+09:00</published>
    <updated>2012-10-25T11:42:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4172、CVE-2012-4174、CVE-2012-4175、および CVE-2012-5273 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005115_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005115</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005114:Adobe Shockwave Player &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005114_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005114_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005114_AD_1.html</id>
    <published>2012-10-25T11:41:20+09:00</published>
    <updated>2012-10-25T11:41:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Shockwave Player には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、CVE-2012-4173、CVE-2012-4174、CVE-2012-4175、および CVE-2012-5273 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005114_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player"/>
    <sec:identifier>JVNDB-2012-005114</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5672:excel, excel_viewer, office: Microsoft Excel Viewer (aka Xlview.exe) and Excel i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5672_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5672_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5672_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-25T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls file with battery voltage data.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5672_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:excel:2007"/>
    <category term="cpe:/a:microsoft:excel_viewer"/>
    <category term="cpe:/a:microsoft:office:2007"/>
    <sec:identifier>CVE-2012-5672</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5368:phpmyadmin: phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5368_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5368_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5368_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-25T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by modifying this code.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5368_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.0.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.1.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.2"/>
    <sec:identifier>CVE-2012-5368</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5339:phpmyadmin: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5339_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5339_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5339_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-25T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.3 allow remote authenticated users to inject arbitrary web script or HTML via a crafted name of (1) an event, (2) a procedure, or (3) a trigger.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5339_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.0.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.1.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.0"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.1"/>
    <category term="cpe:/a:phpmyadmin:phpmyadmin:3.5.2.2"/>
    <sec:identifier>CVE-2012-5339</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3506:open_for_business_project: Unspecified vulnerability in the Apache Open For Bu...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3506_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3506_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3506_AD_1.html</id>
    <published>2012-10-25T00:00:00+09:00</published>
    <updated>2012-10-25T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Apache Open For Business Project (aka OFBiz) 10.04.x before 10.04.03 has unknown impact and attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3506_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:open_for_business_project:10.04.01"/>
    <category term="cpe:/a:apache:open_for_business_project:10.04.02"/>
    <sec:identifier>CVE-2012-3506</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005113:GNOME gnome-keyring &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005113_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005113_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005113_AD_1.html</id>
    <published>2012-10-24T16:48:50+09:00</published>
    <updated>2012-10-24T16:48:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GNOME gnome-keyring は、gpg-cache-method が &quot;idle&quot; または &quot;timeout&quot; に設定されている場合、パスフレーズがキャッシュされる時間を適切に制限しないため、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005113_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:gnome-keyring"/>
    <sec:identifier>JVNDB-2012-005113</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005112:rhncfg &#12398; Red Hat Network Configuration Client &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005112_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005112_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005112_AD_1.html</id>
    <published>2012-10-24T16:48:15+09:00</published>
    <updated>2012-10-24T16:48:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
rhncfg の Red Hat Network (RHN) Configuration Client (rhncfg-client) は、/var/log/rhncfg-actions に対して、誰でも読み取り可能な (world-readable) アクセス権限を用いるため、rhncfg-client アクションに関する重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005112_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:rhncfg"/>
    <sec:identifier>JVNDB-2012-005112</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005111:RazorCMS &#12398; admin/index.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005111_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005111_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005111_AD_1.html</id>
    <published>2012-10-24T16:47:39+09:00</published>
    <updated>2012-10-24T16:47:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
RazorCMS の admin/index.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005111_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms"/>
    <sec:identifier>JVNDB-2012-005111</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005110:mod_cluster &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005110_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005110_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005110_AD_1.html</id>
    <published>2012-10-24T16:46:51+09:00</published>
    <updated>2012-10-24T16:46:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
JBoss Enterprise Application Platform で使用される mod_cluster には、excludedContexts に &quot;ROOT&quot; が設定されている場合、サーバのルートコンテンツを公開するため、アクセス制限を回避される、およびルートコンテンツ上で展開されたアプリケーションへのアクセス権を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005110_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_platform"/>
    <category term="cpe:/a:redhat:jboss_enterprise_web_server"/>
    <category term="cpe:/a:redhat:mod_cluster"/>
    <sec:identifier>JVNDB-2012-005110</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005109:Joomla! &#12398; language search &#12467;&#12531;&#12509;&#12540;&#12493;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005109_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005109_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005109_AD_1.html</id>
    <published>2012-10-24T16:45:39+09:00</published>
    <updated>2012-10-24T16:45:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Joomla! の language search コンポーネントは、&quot;typographical error&quot; が発生するため、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005109_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21"/>
    <sec:identifier>JVNDB-2012-005109</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005108:ATutor AContent &#12398; user/index_inline_editor_submit.php &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12497;&#12473;&#12527;&#12540;&#12489;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005108_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005108_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005108_AD_1.html</id>
    <published>2012-10-24T16:42:56+09:00</published>
    <updated>2012-10-24T16:42:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ATutor AContent の user/index_inline_editor_submit.php は、アクセスを適切に制限しないため、任意のユーザパスワードを変更される脆弱性が存在します。  本脆弱性は、CVE-2012-5168 に対する修正が不十分だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005108_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent"/>
    <sec:identifier>JVNDB-2012-005108</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005107:ATutor AContent &#12398; user/index_inline_editor_submit.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005107_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005107_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005107_AD_1.html</id>
    <published>2012-10-24T16:42:18+09:00</published>
    <updated>2012-10-24T16:42:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ATutor AContent の user/index_inline_editor_submit.php には、SQL インジェクションの脆弱性が存在します。  本脆弱性は、CVE-2012-5167 に対する修正が不十分だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005107_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent"/>
    <sec:identifier>JVNDB-2012-005107</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005106:Subrion CMS &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005106_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005106_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005106_AD_1.html</id>
    <published>2012-10-24T16:41:50+09:00</published>
    <updated>2012-10-24T16:41:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS には、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2011-5211 と重複する可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005106_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005106</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005105:ATutor AContent &#12398; file_manager/preview_top.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005105_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005105_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005105_AD_1.html</id>
    <published>2012-10-24T16:41:12+09:00</published>
    <updated>2012-10-24T16:41:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ATutor AContent の file_manager/preview_top.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005105_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent"/>
    <sec:identifier>JVNDB-2012-005105</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005104:ATutor AContent &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12398;&#12497;&#12473;&#12527;&#12540;&#12489;&#12414;&#12383;&#12399;&#12459;&#12486;&#12468;&#12522;&#21517;&#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005104_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005104_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005104_AD_1.html</id>
    <published>2012-10-24T16:40:35+09:00</published>
    <updated>2012-10-24T16:40:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ATutor AContent には、任意のユーザのパスワードまたはカテゴリ名を変更される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005104_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent"/>
    <sec:identifier>JVNDB-2012-005104</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005103:ATutor AContent &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005103_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005103_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005103_AD_1.html</id>
    <published>2012-10-24T16:39:58+09:00</published>
    <updated>2012-10-24T16:39:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ATutor AContent には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005103_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent"/>
    <sec:identifier>JVNDB-2012-005103</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005102:OpenX &#12398; admin/campaign-zone-link.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005102_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005102_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005102_AD_1.html</id>
    <published>2012-10-24T16:39:01+09:00</published>
    <updated>2012-10-24T16:39:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenX の admin/campaign-zone-link.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005102_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openx:openx"/>
    <sec:identifier>JVNDB-2012-005102</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005101:OpenX &#12398; admin/plugin-index.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005101_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005101_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005101_AD_1.html</id>
    <published>2012-10-24T16:38:29+09:00</published>
    <updated>2012-10-24T16:38:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenX の admin/plugin-index.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005101_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openx:openx"/>
    <sec:identifier>JVNDB-2012-005101</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005100:Subrion CMS &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005100_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005100_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005100_AD_1.html</id>
    <published>2012-10-24T16:37:58+09:00</published>
    <updated>2012-10-24T16:37:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005100_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005100</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005099:Subrion CMS &#12398; register/ &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005099_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005099_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005099_AD_1.html</id>
    <published>2012-10-24T16:37:25+09:00</published>
    <updated>2012-10-24T16:37:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS の register/ には、任意の SQL コマンドを実行されることで、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005099_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005099</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005098:Subrion CMS &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005098_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005098_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005098_AD_1.html</id>
    <published>2012-10-24T16:36:46+09:00</published>
    <updated>2012-10-24T16:36:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005098_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005098</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005097:ibacm &#12395;&#12362;&#12369;&#12427; ib_acm &#12487;&#12540;&#12514;&#12531;&#12525;&#12464;&#12414;&#12383;&#12399; ibacm.port &#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12365;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005097_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005097_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005097_AD_1.html</id>
    <published>2012-10-24T16:35:46+09:00</published>
    <updated>2012-10-24T16:35:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ibacm は、誰でも書き込みできる権限 (world-writable permissions) を持つファイルを作成するため、ib_acm デーモンログ、または ibacm.port ファイルを上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005097_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:ibacm"/>
    <sec:identifier>JVNDB-2012-005097</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005096:ibacm &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005096_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005096_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005096_AD_1.html</id>
    <published>2012-10-24T16:34:50+09:00</published>
    <updated>2012-10-24T16:34:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ibacm は、マルチキャストコネクションの参照数を適切に管理しないため、サービス運用妨害 (ibacm サービスクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005096_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:ibacm"/>
    <sec:identifier>JVNDB-2012-005096</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005095:librdmacm &#12395;&#12362;&#12369;&#12427;&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12398;&#12450;&#12489;&#12524;&#12473;&#35299;&#27770;&#24773;&#22577;&#12434;&#35373;&#23450;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005095_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005095_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005095_AD_1.html</id>
    <published>2012-10-24T15:52:20+09:00</published>
    <updated>2012-10-24T15:52:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
librdmacm は、ibacm.port が指定されていない場合、ポート 6125 へ接続するため、アプリケーションのアドレス解決情報を設定される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005095_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:librdmacm"/>
    <sec:identifier>JVNDB-2012-005095</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005094:libsocialweb &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005094_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005094_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005094_AD_1.html</id>
    <published>2012-10-24T15:36:35+09:00</published>
    <updated>2012-10-24T15:36:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libsocialweb の services/flickr/flickr.c には、Flickr アカウントが設定されていない場合、自動的に Flickr へ接続するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005094_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rob_bradford:libsocialweb"/>
    <sec:identifier>JVNDB-2012-005094</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005093:Subrion CMS &#12398; admin/index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005093_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005093_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005093_AD_1.html</id>
    <published>2012-10-24T11:39:12+09:00</published>
    <updated>2012-10-24T11:39:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS の admin/index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005093_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005093</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005092:Subrion CMS &#12398; poll &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005092_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005092_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005092_AD_1.html</id>
    <published>2012-10-24T11:38:13+09:00</published>
    <updated>2012-10-24T11:38:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Subrion CMS の poll モジュールには、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2012-5452 と重複している可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005092_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms"/>
    <sec:identifier>JVNDB-2012-005092</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005091:libsocialweb &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005091_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005091_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005091_AD_1.html</id>
    <published>2012-10-24T11:37:35+09:00</published>
    <updated>2012-10-24T11:37:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
libsocialweb の (1) services/twitter/twitter-contact-view.c、および (2) services/twitter/twitter-item-view.c には、Twitter アカウントが設定されていない場合、自動的に Twitter へ接続するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005091_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:rob_bradford:libsocialweb"/>
    <sec:identifier>JVNDB-2012-005091</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005024:phpMyFAQ &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005024_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005024_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005024_AD_1.html</id>
    <published>2012-10-24T11:34:30+09:00</published>
    <updated>2012-10-24T11:34:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpMyFAQ には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005024_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyfaq:phpmyfaq"/>
    <sec:identifier>JVNDB-2010-005024</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005090:Claws Mail &#12398; procmime.c &#12398; strchr &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005090_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005090_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005090_AD_1.html</id>
    <published>2012-10-24T11:29:35+09:00</published>
    <updated>2012-10-24T11:29:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Claws Mail の procmime.c の strchr 関数には、サービス運用妨害 (NULL ポインタデリファレンスおよびクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005090_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:claws_mail:claws_mail"/>
    <sec:identifier>JVNDB-2012-005090</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005089:gitolite &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005089_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005089_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005089_AD_1.html</id>
    <published>2012-10-24T11:28:44+09:00</published>
    <updated>2012-10-24T11:28:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
gitolite には、ワイルドカードリポジトリおよび ../(ドットドットスラッシュ) とのパターンマッチングが有効な場合、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005089_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sitaram_chamarty:gitolite"/>
    <sec:identifier>JVNDB-2012-005089</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005088:fwknop &#12398; client/fwknop.c &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005088_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005088_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005088_AD_1.html</id>
    <published>2012-10-24T11:07:54+09:00</published>
    <updated>2012-10-24T11:07:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
fwknop の client/fwknop.c 内の run_last_args 関数には、--last の処理の際、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005088_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cipherdyne:fwknop"/>
    <sec:identifier>JVNDB-2012-005088</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005087:fwknop &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12469;&#12540;&#12496;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005087_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005087_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005087_AD_1.html</id>
    <published>2012-10-24T11:07:54+09:00</published>
    <updated>2012-10-24T11:07:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
fwknop は、IP アドレスを適切に検証しないため、サービス運用妨害 (サーバクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005087_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cipherdyne:fwknop"/>
    <sec:identifier>JVNDB-2012-005087</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005086:OpenStack Object Storage (swift) &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005086_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005086_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005086_AD_1.html</id>
    <published>2012-10-24T11:07:54+09:00</published>
    <updated>2012-10-24T11:07:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Object Storage (swift) は、memcached 内のメタデータを保存およびロードする際、安全でない pickle Python モジュールの loads 関数を使用するため、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005086_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:swift"/>
    <sec:identifier>JVNDB-2012-005086</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005085:jCore &#12398; admin/index.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005085_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005085_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005085_AD_1.html</id>
    <published>2012-10-24T11:07:54+09:00</published>
    <updated>2012-10-24T11:07:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
jCore の admin/index.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005085_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jcore:jcore"/>
    <sec:identifier>JVNDB-2012-005085</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005084:jCore &#12398; admin/index.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005084_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005084_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005084_AD_1.html</id>
    <published>2012-10-24T11:07:53+09:00</published>
    <updated>2012-10-24T11:07:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
jCore の admin/index.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005084_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jcore:jcore"/>
    <sec:identifier>JVNDB-2012-005084</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5456:zoner_antivirus_free: The Zoner AntiVirus Free application for Android do...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5456_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5456_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5456_AD_1.html</id>
    <published>2012-10-24T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Zoner AntiVirus Free application for Android does not verify that the server hostname matches a domain name in the subject's Common Name (CN) field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, as demonstrated by a server used for updating virus signature files.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5456_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:zoner:zoner_antivirus_free:-:-:%7E%7E%7Eandroid%7E%7E"/>
    <category term="cpe:/a:zoner:zoner_antivirus_free:1.7.0:-:%7E%7E%7Eandroid%7E%7E"/>
    <sec:identifier>CVE-2012-5456</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5388:white-label-cms: Cross-site scripting (XSS) vulnerability in wlcms-p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5388_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5388_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5388_AD_1.html</id>
    <published>2012-10-24T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in wlcms-plugin.php in the White Label CMS plugin 1.5 for WordPress allows remote authenticated administrators to inject arbitrary web script or HTML via the wlcms_o_developer_name parameter in a save action to wp-admin/admin.php, a related issue to CVE-2012-5387.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5388_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.5"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5388</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5387:white-label-cms: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5387_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5387_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5387_AD_1.html</id>
    <published>2012-10-24T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in wlcms-plugin.php in the White Label CMS plugin before 1.5.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that modify the developer name via the wlcms_o_developer_name parameter in a save action to wp-admin/admin.php, as demonstrated by a developer name containing XSS sequences.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5387_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.0.2"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.0.3"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.0.4"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.0.5"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.1"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.2"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.3"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.1"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.2"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.3"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.4"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.5"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.6"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.4.7"/>
    <category term="cpe:/a:videousermanuals:white-label-cms:1.5 and previous versions"/>
    <category term="cpe:/a:wordpress:wordpress:-"/>
    <sec:identifier>CVE-2012-5387</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5302:formvine: The server in TIBCO Formvine 3.1.x and 3.2.x before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5302_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5302_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5302_AD_1.html</id>
    <published>2012-10-24T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The server in TIBCO Formvine 3.1.x and 3.2.x before 3.2.1 does not properly implement access control, which allows remote attackers to obtain sensitive information or modify data via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5302_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tibco:formvine:3.1.0"/>
    <category term="cpe:/a:tibco:formvine:3.1.1"/>
    <category term="cpe:/a:tibco:formvine:3.1.2"/>
    <category term="cpe:/a:tibco:formvine:3.2.0"/>
    <sec:identifier>CVE-2012-5302</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5273:shockwave_player: Buffer overflow in Adobe Shockwave Player before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5273_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5273_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5273_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-4172, CVE-2012-4173, CVE-2012-4174, and CVE-2012-4175.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5273_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-5273</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4176:shockwave_player: Array index error in Adobe Shockwave Player before ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4176_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4176_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4176_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Array index error in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4176_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-4176</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4175:shockwave_player: Buffer overflow in Adobe Shockwave Player before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4175_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4175_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4175_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-4172, CVE-2012-4173, CVE-2012-4174, and CVE-2012-5273.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4175_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-4175</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4174:shockwave_player: Buffer overflow in Adobe Shockwave Player before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4174_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4174_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4174_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-4172, CVE-2012-4173, CVE-2012-4175, and CVE-2012-5273.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4174_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-4174</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4173:shockwave_player: Buffer overflow in Adobe Shockwave Player before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4173_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4173_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4173_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-4172, CVE-2012-4174, CVE-2012-4175, and CVE-2012-5273.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4173_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-4173</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4172:shockwave_player: Buffer overflow in Adobe Shockwave Player before 11...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4172_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4172_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4172_AD_1.html</id>
    <published>2012-10-23T00:00:00+09:00</published>
    <updated>2012-10-24T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in Adobe Shockwave Player before 11.6.8.638 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-4173, CVE-2012-4174, CVE-2012-4175, and CVE-2012-5273.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4172_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:shockwave_player:1.0"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.0.210"/>
    <category term="cpe:/a:adobe:shockwave_player:10.0.1.004"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.011"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.0.11"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.1.016"/>
    <category term="cpe:/a:adobe:shockwave_player:10.1.4.020"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.021"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.022"/>
    <category term="cpe:/a:adobe:shockwave_player:10.2.0.023"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.0.456"/>
    <category term="cpe:/a:adobe:shockwave_player:11.0.3.471"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.595"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.0.596"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.1.601"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.10.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.2.602"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.6.606"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.7.609"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.8.612"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.615"/>
    <category term="cpe:/a:adobe:shockwave_player:11.5.9.620"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.0.626"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.1.629"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.3.633"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.4.634"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.5.635"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.6.636"/>
    <category term="cpe:/a:adobe:shockwave_player:11.6.7.637 and previous versions"/>
    <category term="cpe:/a:adobe:shockwave_player:2.0"/>
    <category term="cpe:/a:adobe:shockwave_player:3.0"/>
    <category term="cpe:/a:adobe:shockwave_player:4.0"/>
    <category term="cpe:/a:adobe:shockwave_player:5.0"/>
    <category term="cpe:/a:adobe:shockwave_player:6.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.196a"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.204"/>
    <category term="cpe:/a:adobe:shockwave_player:8.0.205"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.100"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.103"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.105"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.1.106"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.321"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.323"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.324"/>
    <category term="cpe:/a:adobe:shockwave_player:8.5.325"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.383"/>
    <category term="cpe:/a:adobe:shockwave_player:9.0.432"/>
    <sec:identifier>CVE-2012-4172</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-000088:Safari &#12395;&#12362;&#12356;&#12390;&#12522;&#12514;&#12540;&#12488;&#12363;&#12425;&#12525;&#12540;&#12459;&#12523;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12415;&#21462;&#12426;&#21487;&#33021;&#12394;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000088_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000088_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000088_AD_1.html</id>
    <published>2012-10-23T14:00:27+09:00</published>
    <updated>2012-10-23T14:00:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apple が提供する Safari には、リモートからローカルファイルを読み取り可能な脆弱性が存在します。  この脆弱性情報は、情報セキュリティ早期警戒パートナーシップに基づき下記の方が IPA に報告し、JPCERT/CC が開発者との調整を行いました。 報告者: Masahiro YAMADA 氏&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-000088_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apple:safari"/>
    <sec:identifier>JVNDB-2012-000088</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005083:Mutiny &#12395;&#12467;&#12510;&#12531;&#12489;&#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005083_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005083_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005083_AD_1.html</id>
    <published>2012-10-23T13:41:21+09:00</published>
    <updated>2012-10-23T13:41:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Mutiny Limited が提供する Mutiny には、コマンドインジェクションの脆弱性が存在します。  Mutiny Limited が提供する Mutiny の設定画面には、コマンドインジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005083_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mutiny:standard"/>
    <sec:identifier>JVNDB-2012-005083</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005082:IBM XIV Storage System Gen3 &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005082_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005082_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005082_AD_1.html</id>
    <published>2012-10-23T12:14:22+09:00</published>
    <updated>2012-10-23T12:14:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM XIV Storage System Gen3 には、サービス運用妨害 (デバイスの停止) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005082_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:xiv_storage_system_gen3"/>
    <sec:identifier>JVNDB-2012-005082</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005081:IBM AIX &#12362;&#12424;&#12403; VIOS &#12398; FTP &#12463;&#12521;&#12452;&#12450;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#12501;&#12449;&#12452;&#12523;&#12398;&#35501;&#12415;&#36796;&#12415;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005081_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005081_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005081_AD_1.html</id>
    <published>2012-10-23T12:13:46+09:00</published>
    <updated>2012-10-23T12:13:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IBM AIX および VIOS の FTP クライアントは、RBAC 環境では権限を適切に管理しないため、ファイルの読み込み制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005081_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:vios"/>
    <category term="cpe:/o:ibm:aix"/>
    <sec:identifier>JVNDB-2012-005081</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005080:IBM DB2 &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005080_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005080_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005080_AD_1.html</id>
    <published>2012-10-23T12:11:13+09:00</published>
    <updated>2012-10-23T12:11:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
BM DB2 の SQL/PSM Stored Procedure (SP) インフラストラクチャには、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005080_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:db2"/>
    <sec:identifier>JVNDB-2012-005080</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005079:Windows &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; CA ARCserve Backup &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005079_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005079_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005079_AD_1.html</id>
    <published>2012-10-23T12:10:00+09:00</published>
    <updated>2012-10-23T12:10:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する CA ARCserve Backup の (1) サーバ、および (2) エージェントコンポーネントは、RPC リクエストを適切に検証しないため、サービス運用妨害 (サービスクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005079_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:arcserve_backup"/>
    <sec:identifier>JVNDB-2012-005079</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005078:Windows &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; CA ARCserve Backup &#12398;&#12469;&#12540;&#12496;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005078_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005078_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005078_AD_1.html</id>
    <published>2012-10-23T12:09:22+09:00</published>
    <updated>2012-10-23T12:09:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Windows 上で稼働する CA ARCserve Backup のサーバは、RPC リクエストを適切に処理しないため、任意のコードを実行される、またはサービス運用妨害 (DoS) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005078_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:arcserve_backup"/>
    <sec:identifier>JVNDB-2012-005078</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5455:joomla!: Cross-site scripting (XSS) vulnerability in the lan...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5455_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5455_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5455_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the language search component in Joomla! before 3.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a &quot;typographical error.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5455_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:joomla:joomla%21:3.0.0"/>
    <sec:identifier>CVE-2012-5455</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5454:acontent: user/index_inline_editor_submit.php in ATutor ACont...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5454_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5454_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5454_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
user/index_inline_editor_submit.php in ATutor AContent 1.2-1 does not properly restrict access, which allows remote authenticated users to modify arbitrary user passwords via a crafted request.  NOTE: this might be due to an incomplete fix for CVE-2012-5168.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5454_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent:1.2:1"/>
    <sec:identifier>CVE-2012-5454</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5453:acontent: SQL injection vulnerability in user/index_inline_ed...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5453_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5453_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5453_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in user/index_inline_editor_submit.php in ATutor AContent 1.2-1 allows remote authenticated users to execute arbitrary SQL commands via the field parameter.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-5167.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5453_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent:1.2:1"/>
    <sec:identifier>CVE-2012-5453</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5452:subrion_cms: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5452_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5452_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5452_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS 2.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) multi_title parameter to blocks/add/; (2) cost, (3) days, or (4) title[en] parameter to plans/add/; (5) name or (6) title[en] parameter to fields/group/add/ in admin/manage/; or (7) f[accounts][fullname] or (8) f[accounts][username] parameter to advsearch/.  NOTE: This might overlap CVE-2011-5211.  NOTE: it was later reported that the f[accounts][f...&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5452_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.1"/>
    <sec:identifier>CVE-2012-5452</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5169:acontent: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5169_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5169_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5169_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in file_manager/preview_top.php in ATutor AContent before 1.2-2 allow remote attackers to inject arbitrary web script or HTML via the (1) pathext, (2) popup, (3) framed, or (4) file parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5169_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent:1.2"/>
    <category term="cpe:/a:atutor:acontent:1.2:1 and previous versions"/>
    <sec:identifier>CVE-2012-5169</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5168:acontent: ATutor AContent before 1.2-1 allows remote attacker...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5168_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5168_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5168_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ATutor AContent before 1.2-1 allows remote attackers to modify arbitrary user passwords or category names via a direct request to (1) user/index_inline_editor_submit.php or (2) course_category/index_inline_editor_submit.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5168_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent:1.2 and previous versions"/>
    <sec:identifier>CVE-2012-5168</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5167:acontent: Multiple SQL injection vulnerabilities in ATutor AC...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5167_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5167_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5167_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple SQL injection vulnerabilities in ATutor AContent before 1.2-1 allow remote attackers to execute arbitrary SQL commands via the (1) field parameter to course_category/index_inline_editor_submit.php or (2) user/index_inline_editor_submit.php; or (3) id parameter to user/user_password.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5167_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:atutor:acontent:1.2 and previous versions"/>
    <sec:identifier>CVE-2012-5167</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4990:openx: SQL injection vulnerability in admin/campaign-zone-...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4990_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4990_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4990_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in admin/campaign-zone-link.php in OpenX 2.8.10 before revision 81823 allows remote attackers to execute arbitrary SQL commands via the ids[] parameter in a link action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4990_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openx:openx:2.8.10"/>
    <sec:identifier>CVE-2012-4990</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4989:openx: Cross-site scripting (XSS) vulnerability in admin/p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4989_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4989_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4989_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in admin/plugin-index.php in OpenX 2.8.10 before revision 81823 allows remote attackers to inject arbitrary web script or HTML via the parent parameter in an info action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4989_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openx:openx:2.8.10"/>
    <sec:identifier>CVE-2012-4989</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4773:subrion_cms: Multiple cross-site request forgery (CSRF) vulnerab...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4773_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4773_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4773_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site request forgery (CSRF) vulnerabilities in Subrion CMS before 2.2.3 allow remote attackers to hijack the authentication of administrators for requests that add, delete, or modify sensitive information, as demonstrated by adding an administrator account via an add action to admin/accounts/add/.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4773_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.0.4"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.0"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.1"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4773</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4772:subrion_cms: SQL injection vulnerability in register/ in Subrion...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4772_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4772_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4772_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in register/ in Subrion CMS before 2.2.3 allows remote attackers to execute arbitrary SQL commands via the plan_id parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4772_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.0.4"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.0"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.1"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4772</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4771:subrion_cms: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4771_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4771_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4771_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS before 2.2.3 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) admin/accounts/, (2) admin/manage/, or (3) admin/manage/blocks/edit/; or (4) group parameter to admin/configuration/.  NOTE: The f[accounts][fullname] and f[accounts][username] vectors are covered in CVE-2012-5452.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4771_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.0.4"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.0"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.1"/>
    <category term="cpe:/a:intelliants:subrion_cms:2.2.2 and previous versions"/>
    <sec:identifier>CVE-2012-4771</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4518:ibacm: ibacm 1.0.7 creates files with world-writable permi...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4518_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4518_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4518_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ibacm 1.0.7 creates files with world-writable permissions, which allows local users to overwrite the ib_acm daemon log or ibacm.port file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4518_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:ibacm:1.0.7"/>
    <sec:identifier>CVE-2012-4518</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4517:ibacm: ibacm before 1.0.6 does not properly manage referen...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4517_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4517_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4517_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ibacm before 1.0.6 does not properly manage reference counts for multicast connections, which allows remote attackers to cause a denial of service (ibacm service crash) via a crafted join response.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4517_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:ibacm:1.0.5 and previous versions"/>
    <sec:identifier>CVE-2012-4517</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4516:librdmacm: librdmacm 1.0.16, when ibacm.port is not specified,...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4516_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4516_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4516_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
librdmacm 1.0.16, when ibacm.port is not specified, connects to port 6125, which allows remote attackers to specify the address resolution information for the application via a malicious ib_acm service.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4516_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openfabrics:librdmacm:1.0.16"/>
    <sec:identifier>CVE-2012-4516</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4511:libsocialweb: services/flickr/flickr.c in libsocialweb before 0.2...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
services/flickr/flickr.c in libsocialweb before 0.25.22 automatically connects to Flickr when no Flickr account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4511_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bastien_nocera:libsocialweb:0.25.7"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.0"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.11"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.12"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.14"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.15"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.16"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.17"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.18"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.2"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.3"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.4"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.6"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.8"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.9"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.1"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.10"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.13"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.19"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.20 and previous versions"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.5"/>
    <sec:identifier>CVE-2012-4511</sec:identifier>
    <vrda:latestrevisionno>2</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4507:claws-mail: The strchr function in procmime.c in Claws Mail (ak...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4507_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4507_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4507_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The strchr function in procmime.c in Claws Mail (aka claws-mail) 3.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted email.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4507_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:claws-mail:claws-mail:3.8.1"/>
    <sec:identifier>CVE-2012-4507</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4506:gitolite: Directory traversal vulnerability in gitolite 3.x b...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4506_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4506_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4506_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in gitolite 3.x before 3.1, when wild card repositories and a pattern matching &quot;../&quot; are enabled, allows remote authenticated users to create arbitrary repositories and possibly perform other actions via a .. (dot dot) in a repository name.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4506_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sitaram_chamarty:gitolite:3.0"/>
    <category term="cpe:/a:sitaram_chamarty:gitolite:3.01"/>
    <category term="cpe:/a:sitaram_chamarty:gitolite:3.02"/>
    <category term="cpe:/a:sitaram_chamarty:gitolite:3.03"/>
    <category term="cpe:/a:sitaram_chamarty:gitolite:3.04"/>
    <sec:identifier>CVE-2012-4506</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4436:fwknop: Buffer overflow in the run_last_args function in cl...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4436_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4436_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4436_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the run_last_args function in client/fwknop.c in fwknop before 2.0.3, when processing --last, might allow local users to cause a denial of service (client crash) and possibly execute arbitrary code via many .fwknop.run arguments.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4436_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cipherdyne:fwknop:2.0"/>
    <category term="cpe:/a:cipherdyne:fwknop:2.0.1"/>
    <category term="cpe:/a:cipherdyne:fwknop:2.0.2 and previous versions"/>
    <sec:identifier>CVE-2012-4436</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4435:fwknop: fwknop before 2.0.3 does not properly validate IP a...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4435_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4435_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4435_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server crash) via a long IP address.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4435_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cipherdyne:fwknop:2.0"/>
    <category term="cpe:/a:cipherdyne:fwknop:2.0.1"/>
    <category term="cpe:/a:cipherdyne:fwknop:2.0.2 and previous versions"/>
    <sec:identifier>CVE-2012-4435</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4406:swift: OpenStack Object Storage (swift) before 1.7.0 uses ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4406_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4406_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4406_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4406_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:swift:1.0.0"/>
    <category term="cpe:/a:openstack:swift:1.0.1"/>
    <category term="cpe:/a:openstack:swift:1.0.2"/>
    <category term="cpe:/a:openstack:swift:1.1.0"/>
    <category term="cpe:/a:openstack:swift:1.1.0:rc1"/>
    <category term="cpe:/a:openstack:swift:1.1.0:rc2"/>
    <category term="cpe:/a:openstack:swift:1.2.0"/>
    <category term="cpe:/a:openstack:swift:1.2.0:gamma1"/>
    <category term="cpe:/a:openstack:swift:1.2.0:rc1"/>
    <category term="cpe:/a:openstack:swift:1.3.0"/>
    <category term="cpe:/a:openstack:swift:1.3.0:gamma1"/>
    <category term="cpe:/a:openstack:swift:1.3.0:rc1"/>
    <category term="cpe:/a:openstack:swift:1.4.0"/>
    <category term="cpe:/a:openstack:swift:1.4.1"/>
    <category term="cpe:/a:openstack:swift:1.4.2"/>
    <category term="cpe:/a:openstack:swift:1.4.3"/>
    <category term="cpe:/a:openstack:swift:1.4.4"/>
    <category term="cpe:/a:openstack:swift:1.4.5"/>
    <category term="cpe:/a:openstack:swift:1.4.6"/>
    <category term="cpe:/a:openstack:swift:1.4.7"/>
    <category term="cpe:/a:openstack:swift:1.4.8"/>
    <category term="cpe:/a:openstack:swift:1.5.0"/>
    <category term="cpe:/a:openstack:swift:1.6.0 and previous versions"/>
    <sec:identifier>CVE-2012-4406</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4232:jcore: SQL injection vulnerability in admin/index.php in j...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4232_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4232_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4232_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to execute arbitrary SQL commands via the memberloginid cookie.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4232_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jcore:jcore:1.0:pre1 and previous versions"/>
    <sec:identifier>CVE-2012-4232</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4231:jcore: Cross-site scripting (XSS) vulnerability in admin/i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4231_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4231_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4231_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to inject arbitrary web script or HTML via the path parameter.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4231_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:jcore:jcore:1.0:pre1 and previous versions"/>
    <sec:identifier>CVE-2012-4231</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3466:gnome-keyring: GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3466_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3466_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3466_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-cache-method is set to &quot;idle&quot; or &quot;timeout,&quot; does not properly limit the amount of time a passphrase is cached, which allows attackers to have an unspecified impact via unknown attack vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3466_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:gnome:gnome-keyring:3.4.0"/>
    <category term="cpe:/a:gnome:gnome-keyring:3.4.1"/>
    <sec:identifier>CVE-2012-3466</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2679:rhncfg: Red Hat Network (RHN) Configuration Client (rhncfg-...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2679_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2679_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2679_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-readable) for /var/log/rhncfg-actions, which allows local users to obtain sensitive information about the rhncfg-client actions by reading the file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2679_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:rhncfg:5.10.27 and previous versions"/>
    <sec:identifier>CVE-2012-2679</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1900:razorcms: Cross-site request forgery (CSRF) vulnerability in ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1900_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1900_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1900_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site request forgery (CSRF) vulnerability in admin/index.php in RazorCMS 1.2.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that delete arbitrary web pages via a showcats action.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1900_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:razorcms:razorcms:0.2"/>
    <category term="cpe:/a:razorcms:razorcms:0.2:rc"/>
    <category term="cpe:/a:razorcms:razorcms:0.2:rc2"/>
    <category term="cpe:/a:razorcms:razorcms:0.3"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta1"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:beta2"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:rc"/>
    <category term="cpe:/a:razorcms:razorcms:0.3:rc2"/>
    <category term="cpe:/a:razorcms:razorcms:0.4"/>
    <category term="cpe:/a:razorcms:razorcms:1.0"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:beta"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:beta2"/>
    <category term="cpe:/a:razorcms:razorcms:1.0:rc"/>
    <category term="cpe:/a:razorcms:razorcms:1.1"/>
    <category term="cpe:/a:razorcms:razorcms:1.2"/>
    <category term="cpe:/a:razorcms:razorcms:1.2.1 and previous versions"/>
    <sec:identifier>CVE-2012-1900</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1154:jboss_enterprise_application_platform, mod_cluster: mod_cluster 1.0.10 before 1.0.10 CP03 and 1.1.x bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1154_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1154_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1154_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
mod_cluster 1.0.10 before 1.0.10 CP03 and 1.1.x before 1.1.4, as used in JBoss Enterprise Application Platform 5.1.2, when &quot;ROOT&quot; is set to excludedContexts, exposes the root context of the server, which allows remote attackers to bypass access restrictions and gain access to applications deployed on the root context via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1154_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redhat:jboss_enterprise_application_platform:5.1.2"/>
    <category term="cpe:/a:redhat:mod_cluster:1.0.10"/>
    <category term="cpe:/a:redhat:mod_cluster:1.1.0"/>
    <category term="cpe:/a:redhat:mod_cluster:1.1.1"/>
    <category term="cpe:/a:redhat:mod_cluster:1.1.2"/>
    <category term="cpe:/a:redhat:mod_cluster:1.1.3"/>
    <category term="cpe:/a:redhat:mod_cluster:1.1.4"/>
    <sec:identifier>CVE-2012-1154</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5212:subrion_cms: SQL injection vulnerability in admin/index.php in S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5212_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5212_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5212_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
SQL injection vulnerability in admin/index.php in Subrion CMS 2.0.4 allows remote attackers to execute arbitrary SQL commands via the (1) user name or (2) password field.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5212_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.0.4"/>
    <sec:identifier>CVE-2011-5212</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-5211:subrion_cms: Cross-site scripting (XSS) vulnerability in the pol...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5211_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5211_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5211_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the poll module in Subrion CMS 2.0.4 allows remote attackers to inject arbitrary web script or HTML via the title field.  NOTE: some of these details are obtained from third party information.  NOTE: this might overlap CVE-2012-5452.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-5211_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:intelliants:subrion_cms:2.0.4"/>
    <sec:identifier>CVE-2011-5211</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2011-4129:libsocialweb: (1) services/twitter/twitter-contact-view.c and (2)...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4129_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4129_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4129_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2011-4129_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bastien_nocera:libsocialweb:0.25.7"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.0"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.11"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.12"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.14"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.15"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.16"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.17"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.18"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.2"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.3"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.4"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.6"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.8"/>
    <category term="cpe:/a:rob_bradford:libsocialweb:0.25.9"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.1"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.10"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.13"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.19 and previous versions"/>
    <category term="cpe:/a:ross_burton:libsocialweb:0.25.5"/>
    <sec:identifier>CVE-2011-4129</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2010-4821:phpmyfaq: Cross-site scripting (XSS) vulnerability in phpMyFA...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-4821_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-4821_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-4821_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-23T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.6.9 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2010-4821_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.0.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.0.1a"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.4a"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.1.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.5a"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.2.5b"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.10"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.11"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.12"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.13"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.14"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.8"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.9"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.3.9:pl1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.0a"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.10"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.11"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.8"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4.9"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4:alpha1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.4:alpha2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.8"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5.9"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:alpha1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:alpha2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:beta1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:beta2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:beta3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:rc1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:rc2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:rc3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:rc4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.5:rc5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.10"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.11"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.12"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.8"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:1.6.9"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.10"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.11"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.12"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.13"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.14"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.15"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.16"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.17"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.8"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.0.9"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.5.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.0"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.1"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.2"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.3"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.4"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.5"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.6"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.7"/>
    <category term="cpe:/a:phpmyfaq:phpmyfaq:2.6.8 and previous versions"/>
    <sec:identifier>CVE-2010-4821</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005077:EMC NetWorker Module for Microsoft Applications &#12398;&#12463;&#12521;&#12452;&#12450;&#12531;&#12488;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005077_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005077_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005077_AD_1.html</id>
    <published>2012-10-22T13:31:27+09:00</published>
    <updated>2012-10-22T13:31:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC NetWorker Module for Microsoft Applications (NMM) のクライアントには、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005077_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications"/>
    <sec:identifier>JVNDB-2012-005077</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005076:EMC NetWorker Module for Microsoft Applications &#12395;&#12362;&#12369;&#12427;&#24179;&#25991;&#12398;&#31649;&#29702;&#32773;&#36039;&#26684;&#24773;&#22577;&#12434;&#35501;&#12415;&#21462;&#12425;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005076_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005076_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005076_AD_1.html</id>
    <published>2012-10-22T13:29:15+09:00</published>
    <updated>2012-10-22T13:29:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC NetWorker Module for Microsoft Applications 内の (1) インストールおよび (2)アップグレードプロセスには、Exchange Server が使用されている場合、平文の管理者資格情報を読み取られる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005076_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications"/>
    <sec:identifier>JVNDB-2012-005076</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005075:Symantec Ghost Solution Suite &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005075_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005075_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005075_AD_1.html</id>
    <published>2012-10-22T13:26:58+09:00</published>
    <updated>2012-10-22T13:26:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Symantec Ghost Solution Suite には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005075_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:ghost_solutions_suite"/>
    <sec:identifier>JVNDB-2012-005075</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4751:otrs: Cross-site scripting (XSS) vulnerability in Open Ti...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4751_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4751_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4751_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.15, 3.0.x before 3.0.17, and 3.1.x before 3.1.11 allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with whitespace before a javascript: URL in the SRC attribute of an element, as demonstrated by an IFRAME element.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4751_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta1"/>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta2"/>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta3"/>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta4"/>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta5"/>
    <category term="cpe:/a:otrs:otrs:2.4.0:beta6"/>
    <category term="cpe:/a:otrs:otrs:2.4.1"/>
    <category term="cpe:/a:otrs:otrs:2.4.10"/>
    <category term="cpe:/a:otrs:otrs:2.4.11"/>
    <category term="cpe:/a:otrs:otrs:2.4.12"/>
    <category term="cpe:/a:otrs:otrs:2.4.13"/>
    <category term="cpe:/a:otrs:otrs:2.4.14"/>
    <category term="cpe:/a:otrs:otrs:2.4.2"/>
    <category term="cpe:/a:otrs:otrs:2.4.3"/>
    <category term="cpe:/a:otrs:otrs:2.4.4"/>
    <category term="cpe:/a:otrs:otrs:2.4.5"/>
    <category term="cpe:/a:otrs:otrs:2.4.6"/>
    <category term="cpe:/a:otrs:otrs:2.4.7"/>
    <category term="cpe:/a:otrs:otrs:2.4.8"/>
    <category term="cpe:/a:otrs:otrs:2.4.9"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta1"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta2"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta3"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta4"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta5"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta6"/>
    <category term="cpe:/a:otrs:otrs:3.0.0:beta7"/>
    <category term="cpe:/a:otrs:otrs:3.0.1"/>
    <category term="cpe:/a:otrs:otrs:3.0.10"/>
    <category term="cpe:/a:otrs:otrs:3.0.11"/>
    <category term="cpe:/a:otrs:otrs:3.0.12"/>
    <category term="cpe:/a:otrs:otrs:3.0.13"/>
    <category term="cpe:/a:otrs:otrs:3.0.14"/>
    <category term="cpe:/a:otrs:otrs:3.0.15"/>
    <category term="cpe:/a:otrs:otrs:3.0.16"/>
    <category term="cpe:/a:otrs:otrs:3.0.2"/>
    <category term="cpe:/a:otrs:otrs:3.0.3"/>
    <category term="cpe:/a:otrs:otrs:3.0.4"/>
    <category term="cpe:/a:otrs:otrs:3.0.5"/>
    <category term="cpe:/a:otrs:otrs:3.0.6"/>
    <category term="cpe:/a:otrs:otrs:3.0.7"/>
    <category term="cpe:/a:otrs:otrs:3.0.8"/>
    <category term="cpe:/a:otrs:otrs:3.0.9"/>
    <category term="cpe:/a:otrs:otrs:3.1.0"/>
    <category term="cpe:/a:otrs:otrs:3.1.1"/>
    <category term="cpe:/a:otrs:otrs:3.1.10"/>
    <category term="cpe:/a:otrs:otrs:3.1.2"/>
    <category term="cpe:/a:otrs:otrs:3.1.3"/>
    <category term="cpe:/a:otrs:otrs:3.1.4"/>
    <category term="cpe:/a:otrs:otrs:3.1.5"/>
    <category term="cpe:/a:otrs:otrs:3.1.6"/>
    <category term="cpe:/a:otrs:otrs:3.1.7"/>
    <category term="cpe:/a:otrs:otrs:3.1.8"/>
    <category term="cpe:/a:otrs:otrs:3.1.9"/>
    <sec:identifier>CVE-2012-4751</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3001:standard: Mutiny Standard before 4.5-1.12 allows remote attac...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3001_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3001_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3001_AD_1.html</id>
    <published>2012-10-22T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mutiny Standard before 4.5-1.12 allows remote attackers to execute arbitrary commands via the network-interface menu, related to a &quot;command injection vulnerability.&quot;&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3001_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mutiny:standard:4.4-1.12"/>
    <category term="cpe:/a:mutiny:standard:4.5-1.03"/>
    <category term="cpe:/a:mutiny:standard:4.5-1.05"/>
    <category term="cpe:/a:mutiny:standard:4.5-1.07"/>
    <category term="cpe:/a:mutiny:standard:4.5-1.10 and previous versions"/>
    <sec:identifier>CVE-2012-3001</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4933:zenworks_asset_management: The rtrlet web application in the Web Console in No...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4933_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4933_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4933_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hard-coded password of Scott for the (1) GetFile_Password and (2) GetConfigInfo_Password operations, which allows remote attackers to obtain sensitive information via a crafted rtrlet/rtr request for the HandleMaintenanceCalls function.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4933_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:zenworks_asset_management:7.5"/>
    <sec:identifier>CVE-2012-4933</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2167:xiv_storage_system_gen3, xiv_storage_system_gen3_firmware: The IBM XIV Storage System Gen3 before 11.1.0.a all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2167_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2167_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2167_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The IBM XIV Storage System Gen3 before 11.1.0.a allows remote attackers to cause a denial of service (device outage) via TCP packets to unspecified ports.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2167_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:ibm:xiv_storage_system_gen3:2810"/>
    <category term="cpe:/h:ibm:xiv_storage_system_gen3:2812-114"/>
    <category term="cpe:/o:ibm:xiv_storage_system_gen3_firmware:11.1.0 and previous versions"/>
    <sec:identifier>CVE-2012-2167</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4845:aix, vios: The FTP client in AIX 6.1 and 7.1, and VIOS 2.2.1.4...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4845_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4845_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4845_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The FTP client in AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly manage privileges in an RBAC environment, which allows attackers to bypass intended file-read restrictions by leveraging the setuid installation of the ftp executable file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4845_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:ibm:aix:6.1"/>
    <category term="cpe:/o:ibm:aix:7.1"/>
    <category term="cpe:/o:ibm:vios:2.2.1.4:fp-25_sp-02"/>
    <sec:identifier>CVE-2012-4845</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4826:db2: Stack-based buffer overflow in the SQL/PSM (aka SQL...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4826_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4826_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4826_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Stack-based buffer overflow in the SQL/PSM (aka SQL Persistent Stored Module) Stored Procedure (SP) infrastructure in IBM DB2 9.1, 9.5, 9.7 before FP7, 9.8, and 10.1 might allow remote authenticated users to execute arbitrary code by debugging a stored procedure.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4826_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ibm:db2:10.1"/>
    <category term="cpe:/a:ibm:db2:9.1"/>
    <category term="cpe:/a:ibm:db2:9.5"/>
    <category term="cpe:/a:ibm:db2:9.7"/>
    <category term="cpe:/a:ibm:db2:9.7.0.1"/>
    <category term="cpe:/a:ibm:db2:9.7.0.2"/>
    <category term="cpe:/a:ibm:db2:9.7.0.3"/>
    <category term="cpe:/a:ibm:db2:9.7.0.4"/>
    <category term="cpe:/a:ibm:db2:9.7.0.5"/>
    <category term="cpe:/a:ibm:db2:9.7.0.6"/>
    <category term="cpe:/a:ibm:db2:9.8"/>
    <sec:identifier>CVE-2012-4826</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2972:arcserve_backup: The (1) server and (2) agent components in CA ARCse...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2972_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2972_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2972_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) server and (2) agent components in CA ARCserve Backup r12.5, r15, and r16 on Windows do not properly validate RPC requests, which allows remote attackers to cause a denial of service (service crash) via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2972_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:arcserve_backup:r12.5"/>
    <category term="cpe:/a:ca:arcserve_backup:r15.0"/>
    <category term="cpe:/a:ca:arcserve_backup:r16.0"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-2972</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2971:arcserve_backup: The server in CA ARCserve Backup r12.5, r15, and r1...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2971_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2971_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2971_AD_1.html</id>
    <published>2012-10-20T00:00:00+09:00</published>
    <updated>2012-10-22T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The server in CA ARCserve Backup r12.5, r15, and r16 on Windows does not properly process RPC requests, which allows remote attackers to execute arbitrary code or cause a denial of service via a crafted request.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2971_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:ca:arcserve_backup:r12.5"/>
    <category term="cpe:/a:ca:arcserve_backup:r15.0"/>
    <category term="cpe:/a:ca:arcserve_backup:r16.0"/>
    <category term="cpe:/o:microsoft:windows"/>
    <sec:identifier>CVE-2012-2971</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005074:Oracle Fusion Middleware &#12398; Oracle WebCenter Sites &#12395;&#12362;&#12369;&#12427; ImagePicker &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005074_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005074_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005074_AD_1.html</id>
    <published>2012-10-19T18:18:40+09:00</published>
    <updated>2012-10-19T18:18:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle WebCenter Sites には、ImagePicker に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005074_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005074</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005073:Oracle Fusion Middleware &#12398; Oracle Outside In Technology &#12395;&#12362;&#12369;&#12427; Outside In HTML Export SDK &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005073_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005073_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005073_AD_1.html</id>
    <published>2012-10-19T18:18:13+09:00</published>
    <updated>2012-10-19T18:18:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Outside In Technology には、Outside In HTML Export SDK に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005073_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005073</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005072:Oracle Fusion Middleware &#12398; Oracle Outside In Technology &#12395;&#12362;&#12369;&#12427; Outside In Filters &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005072_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005072_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005072_AD_1.html</id>
    <published>2012-10-19T18:17:39+09:00</published>
    <updated>2012-10-19T18:17:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Outside In Technology には、Outside In Filters に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005072_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005072</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005071:Oracle Fusion Middleware &#12398; Oracle JRockit &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005071_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005071_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005071_AD_1.html</id>
    <published>2012-10-19T18:17:11+09:00</published>
    <updated>2012-10-19T18:17:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle JRockit には、機密性、完全性、可用性に影響のある脆弱性が存在します。 本脆弱性は、CVE-2012-5083、CVE-2012-1531、CVE-2012-5081、および CVE-2012-5085 と重複する可能性があります。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005071_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-005071</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005070:Oracle Fusion Middleware &#12398; Oracle BI Publisher &#12395;&#12362;&#12369;&#12427; Administration &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005070_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005070_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005070_AD_1.html</id>
    <published>2012-10-19T18:12:10+09:00</published>
    <updated>2012-10-19T18:12:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle BI Publisher には、Administration に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005070_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005070</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005069:Oracle Fusion Middleware &#12398; Oracle BI Publisher &#12395;&#12362;&#12369;&#12427; Administration &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005069_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005069_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005069_AD_1.html</id>
    <published>2012-10-19T18:11:42+09:00</published>
    <updated>2012-10-19T18:11:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle BI Publisher には、Administration に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005069_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005069</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005068:Oracle Fusion Middleware &#12398; Oracle WebCenter Sites &#12395;&#12362;&#12369;&#12427; Advanced UI &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005068_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005068_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005068_AD_1.html</id>
    <published>2012-10-19T18:11:16+09:00</published>
    <updated>2012-10-19T18:11:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle WebCenter Sites には、Advanced UI に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005068_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005068</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005067:Oracle Fusion Middleware &#12398; Oracle WebCenter Sites &#12395;&#12362;&#12369;&#12427; Advanced UI &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005067_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005067_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005067_AD_1.html</id>
    <published>2012-10-19T18:10:52+09:00</published>
    <updated>2012-10-19T18:10:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle WebCenter Sites には、Advanced UI に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005067_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005067</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005066:Oracle Fusion Middleware &#12398; Oracle WebCenter Sites &#12395;&#12362;&#12369;&#12427; Advanced UI &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005066_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005066_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005066_AD_1.html</id>
    <published>2012-10-19T18:10:22+09:00</published>
    <updated>2012-10-19T18:10:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle WebCenter Sites は、Advanced UI に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005066_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005066</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005065:Oracle Fusion Middleware &#12398; Oracle Fusion Middleware &#12395;&#12362;&#12369;&#12427; Advanced UI &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005065_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005065_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005065_AD_1.html</id>
    <published>2012-10-19T18:09:57+09:00</published>
    <updated>2012-10-19T18:09:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle WebCenter Sites には、Advanced UI に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005065_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005065</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005064:Oracle Fusion Middleware &#12398; Oracle Application Server Single Sign-On &#12395;&#12362;&#12369;&#12427; Redirect &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005064_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005064_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005064_AD_1.html</id>
    <published>2012-10-19T18:09:30+09:00</published>
    <updated>2012-10-19T18:09:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Application Server Single Sign-On には、Redirect に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005064_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005064</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005063:Oracle Fusion Middleware &#12398; Oracle Reports Developer &#12395;&#12362;&#12369;&#12427; Servlet &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005063_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005063_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005063_AD_1.html</id>
    <published>2012-10-19T18:09:06+09:00</published>
    <updated>2012-10-19T18:09:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Reports Developer には、Servlet に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005063_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005063</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005062:Oracle Fusion Middleware &#12398; Oracle Fusion Middleware &#12395;&#12362;&#12369;&#12427; Report Server Component &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005062_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005062_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005062_AD_1.html</id>
    <published>2012-10-19T18:07:32+09:00</published>
    <updated>2012-10-19T18:07:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Fusion Middleware には、Report Server Component に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005062_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005062</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005061:Oracle Fusion Middleware &#12398; Oracle Business Intelligence Enterprise Edition &#12395;&#12362;&#12369;&#12427; Installation &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005061_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005061_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005061_AD_1.html</id>
    <published>2012-10-19T18:06:49+09:00</published>
    <updated>2012-10-19T18:06:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Business Intelligence Enterprise Edition には、Installation に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005061_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005061</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005060:Oracle Fusion Middleware &#12398; Oracle Application Server Single Sign-On &#12395;&#12362;&#12369;&#12427; Redirects &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005060_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005060_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005060_AD_1.html</id>
    <published>2012-10-19T17:43:40+09:00</published>
    <updated>2012-10-19T17:43:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Application Server Single Sign-On には、Redirects に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005060_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005060</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005059:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005059_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005059_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005059_AD_1.html</id>
    <published>2012-10-19T17:43:14+09:00</published>
    <updated>2012-10-19T17:43:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005059_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005059</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005058:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005058_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005058_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005058_AD_1.html</id>
    <published>2012-10-19T17:42:48+09:00</published>
    <updated>2012-10-19T17:42:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005058_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005058</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005057:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005057_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005057_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005057_AD_1.html</id>
    <published>2012-10-19T17:42:23+09:00</published>
    <updated>2012-10-19T17:42:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005057_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005057</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005056:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005056_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005056_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005056_AD_1.html</id>
    <published>2012-10-19T17:41:52+09:00</published>
    <updated>2012-10-19T17:41:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005056_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005056</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005055:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005055_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005055_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005055_AD_1.html</id>
    <published>2012-10-19T17:41:26+09:00</published>
    <updated>2012-10-19T17:41:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005055_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005055</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005054:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005054_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005054_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005054_AD_1.html</id>
    <published>2012-10-19T17:40:59+09:00</published>
    <updated>2012-10-19T17:40:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005054_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005054</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005053:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005053_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005053_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005053_AD_1.html</id>
    <published>2012-10-19T17:40:31+09:00</published>
    <updated>2012-10-19T17:40:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005053_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005053</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005052:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005052_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005052_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005052_AD_1.html</id>
    <published>2012-10-19T17:40:01+09:00</published>
    <updated>2012-10-19T17:40:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005052_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005052</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005051:Oracle Fusion Middleware &#12398; Oracle Imaging and Process Management &#12395;&#12362;&#12369;&#12427; Web &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005051_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005051_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005051_AD_1.html</id>
    <published>2012-10-19T17:38:58+09:00</published>
    <updated>2012-10-19T17:38:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Fusion Middleware の Oracle Imaging and Process Management には、Web に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005051_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware"/>
    <sec:identifier>JVNDB-2012-005051</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005050:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005050_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005050_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005050_AD_1.html</id>
    <published>2012-10-19T16:53:44+09:00</published>
    <updated>2012-10-19T16:53:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005050_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005050</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005049:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005049_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005049_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005049_AD_1.html</id>
    <published>2012-10-19T16:52:01+09:00</published>
    <updated>2012-10-19T16:52:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005049_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005049</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005048:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005048_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005048_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005048_AD_1.html</id>
    <published>2012-10-19T16:51:24+09:00</published>
    <updated>2012-10-19T16:51:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005048_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005048</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005047:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005047_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005047_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005047_AD_1.html</id>
    <published>2012-10-19T16:50:53+09:00</published>
    <updated>2012-10-19T16:50:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、完全性および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005047_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005047</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005046:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005046_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005046_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005046_AD_1.html</id>
    <published>2012-10-19T16:50:24+09:00</published>
    <updated>2012-10-19T16:50:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005046_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005046</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005045:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005045_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005045_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005045_AD_1.html</id>
    <published>2012-10-19T16:49:52+09:00</published>
    <updated>2012-10-19T16:49:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005045_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005045</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005044:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005044_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005044_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005044_AD_1.html</id>
    <published>2012-10-19T16:49:18+09:00</published>
    <updated>2012-10-19T16:49:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005044_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005044</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005043:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005043_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005043_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005043_AD_1.html</id>
    <published>2012-10-19T16:48:06+09:00</published>
    <updated>2012-10-19T16:48:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005043_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005043</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005042:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005042_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005042_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005042_AD_1.html</id>
    <published>2012-10-19T16:47:35+09:00</published>
    <updated>2012-10-19T16:47:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005042_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005042</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005041:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM for Process &#12395;&#12362;&#12369;&#12427; User Group Management &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005041_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005041_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005041_AD_1.html</id>
    <published>2012-10-19T16:24:22+09:00</published>
    <updated>2012-10-19T16:24:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM for Process には、User Group Management に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005041_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005041</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005040:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM for Process &#12395;&#12362;&#12369;&#12427; Global Spec Management &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005040_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005040_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005040_AD_1.html</id>
    <published>2012-10-19T16:23:50+09:00</published>
    <updated>2012-10-19T16:23:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM for Process には、Global Spec Management に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005040_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005040</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005039:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM for Process &#12395;&#12362;&#12369;&#12427; Supply Chain Relationship Management &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005039_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005039_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005039_AD_1.html</id>
    <published>2012-10-19T16:23:19+09:00</published>
    <updated>2012-10-19T16:23:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM for Process には、Supply Chain Relationship Management に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005039_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005039</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005038:Oracle Supply Chain Products Suite &#12398; Oracle Agile Product Supplier Collaboration for Process &#12395;&#12362;&#12369;&#12427; Supplier Portal &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005038_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005038_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005038_AD_1.html</id>
    <published>2012-10-19T16:22:34+09:00</published>
    <updated>2012-10-19T16:22:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile Product Supplier Collaboration for Process には、Supplier Portal に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005038_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005038</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005037:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM for Process &#12395;&#12362;&#12369;&#12427; Document Reference Library &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005037_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005037_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005037_AD_1.html</id>
    <published>2012-10-19T16:21:57+09:00</published>
    <updated>2012-10-19T16:21:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM for Process には、Document Reference Library に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005037_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005037</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005036:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM Framework &#12395;&#12362;&#12369;&#12427; ROLESPRV &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005036_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005036_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005036_AD_1.html</id>
    <published>2012-10-19T16:21:25+09:00</published>
    <updated>2012-10-19T16:21:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM Framework には、ROLESPRV に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005036_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005036</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005035:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM Framework &#12395;&#12362;&#12369;&#12427; Web Client &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005035_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005035_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005035_AD_1.html</id>
    <published>2012-10-19T16:20:25+09:00</published>
    <updated>2012-10-19T16:20:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM Framework には、Web Client (CS) に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005035_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005035</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005034:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM Framework &#12395;&#12362;&#12369;&#12427; ATTACH &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005034_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005034_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005034_AD_1.html</id>
    <published>2012-10-19T16:16:13+09:00</published>
    <updated>2012-10-19T16:16:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM Framework には、ATTACH に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005034_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005034</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005033:Oracle Supply Chain Products Suite &#12398; Oracle Agile PLM For Process &#12395;&#12362;&#12369;&#12427; Supply Chain Relationship Management &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005033_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005033_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005033_AD_1.html</id>
    <published>2012-10-19T16:12:53+09:00</published>
    <updated>2012-10-19T16:12:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Supply Chain Products Suite の Oracle Agile PLM For Process には、Supply Chain Relationship Management に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005033_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite"/>
    <sec:identifier>JVNDB-2012-005033</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005032:Oracle Siebel CRM &#12398; Siebel UI Framework &#12395;&#12362;&#12369;&#12427; Portal Framework &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005032_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005032_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005032_AD_1.html</id>
    <published>2012-10-19T15:59:59+09:00</published>
    <updated>2012-10-19T15:59:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Siebel CRM の Siebel UI Framework には、Portal Framework に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005032_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:siebel_crm"/>
    <sec:identifier>JVNDB-2012-005032</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005031:Oracle Siebel CRM &#12398; Siebel UI Framework &#12395;&#12362;&#12369;&#12427; Siebel Documentation &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005031_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005031_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005031_AD_1.html</id>
    <published>2012-10-19T15:56:28+09:00</published>
    <updated>2012-10-19T15:56:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Siebel CRM の Siebel UI Framework には、Siebel Documentation に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005031_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:siebel_crm"/>
    <sec:identifier>JVNDB-2012-005031</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005030:Oracle Virtualization &#12398; Oracle VM Virtual Box &#12395;&#12362;&#12369;&#12427; VirtualBox Core &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005030_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005030_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005030_AD_1.html</id>
    <published>2012-10-19T15:50:46+09:00</published>
    <updated>2012-10-19T15:50:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Virtualization の Oracle VM Virtual Box には、VirtualBox Core に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005030_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:virtualization"/>
    <sec:identifier>JVNDB-2012-005030</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005029:Oracle Virtualization &#12398; Secure Global Desktop &#12395;&#12362;&#12369;&#12427; Core &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005029_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005029_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005029_AD_1.html</id>
    <published>2012-10-19T15:49:02+09:00</published>
    <updated>2012-10-19T15:49:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Virtualization の Secure Global Desktop には、Core に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005029_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:virtualization"/>
    <sec:identifier>JVNDB-2012-005029</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005028:Oracle E-Business Suite &#12398; Oracle iStore &#12395;&#12362;&#12369;&#12427; Web interface &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005028_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005028_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005028_AD_1.html</id>
    <published>2012-10-19T15:48:05+09:00</published>
    <updated>2012-10-19T15:48:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle iStore には、Web interface に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005028_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005028</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005027:Oracle E-Business Suite &#12398; Oracle iRecruitment &#12395;&#12362;&#12369;&#12427; Signon &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005027_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005027_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005027_AD_1.html</id>
    <published>2012-10-19T15:47:30+09:00</published>
    <updated>2012-10-19T15:47:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle iRecruitment には、Signon に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005027_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005027</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005026:Oracle E-Business Suite &#12398; Oracle Human Resources &#12395;&#12362;&#12369;&#12427; PDF &#29983;&#25104;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005026_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005026_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005026_AD_1.html</id>
    <published>2012-10-19T15:46:34+09:00</published>
    <updated>2012-10-19T15:46:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Human Resources には、PDF 生成に関する処理に不備があるため、機密性および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005026_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005026</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005025:Oracle E-Business Suite &#12398; Oracle Applications Technology Stack &#12395;&#12362;&#12369;&#12427; Autoconfig Templates &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005025_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005025_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005025_AD_1.html</id>
    <published>2012-10-19T15:45:40+09:00</published>
    <updated>2012-10-19T15:45:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Applications Technology Stack には、Autoconfig Templates に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005025_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005025</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005024:Oracle E-Business Suite &#12398; Oracle Marketing &#12395;&#12362;&#12369;&#12427; Publish Item &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005024_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005024_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005024_AD_1.html</id>
    <published>2012-10-19T15:45:03+09:00</published>
    <updated>2012-10-19T15:45:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Marketing には、Publish Item に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005024_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005024</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005023:Oracle E-Business Suite &#12398; Oracle Applications Framework &#12395;&#12362;&#12369;&#12427; MDS &#12525;&#12540;&#12487;&#12451;&#12531;&#12464;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005023_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005023_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005023_AD_1.html</id>
    <published>2012-10-19T15:44:22+09:00</published>
    <updated>2012-10-19T15:44:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Applications Framework には、MDS ローディングに関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005023_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005023</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005022:Oracle E-Business Suite &#12398; Oracle Field Service &#12395;&#12362;&#12369;&#12427; Wireless/WAP &#12450;&#12483;&#12503;&#12525;&#12540;&#12489;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005022_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005022_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005022_AD_1.html</id>
    <published>2012-10-19T15:42:20+09:00</published>
    <updated>2012-10-19T15:42:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Field Service には、 Wireless/WAP アップロードに関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005022_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005022</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005021:Oracle E-Business Suite &#12398; Oracle Application Object Library &#12395;&#12362;&#12369;&#12427; Signon &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005021_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005021_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005021_AD_1.html</id>
    <published>2012-10-19T15:41:38+09:00</published>
    <updated>2012-10-19T15:41:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle Application Object Library には、Signon (local and SSO) に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005021_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005021</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005020:Oracle E-Business Suite &#12398; Oracle iStore &#12395;&#12362;&#12369;&#12427; Web &#12452;&#12531;&#12479;&#12540;&#12501;&#12455;&#12540;&#12473;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005020_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005020_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005020_AD_1.html</id>
    <published>2012-10-19T15:41:03+09:00</published>
    <updated>2012-10-19T15:41:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle E-Business Suite の Oracle iStore には、Web インターフェースに関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005020_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite"/>
    <sec:identifier>JVNDB-2012-005020</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005019:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise Campus Solutions &#12395;&#12362;&#12369;&#12427; Self-Service &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005019_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005019_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005019_AD_1.html</id>
    <published>2012-10-19T15:25:38+09:00</published>
    <updated>2012-10-19T15:25:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise Campus Solutions には、Self-Service (Student Records) に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005019_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005019</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005018:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Query &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005018_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005018_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005018_AD_1.html</id>
    <published>2012-10-19T15:24:33+09:00</published>
    <updated>2012-10-19T15:24:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Query に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005018_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005018</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005017:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Portal &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005017_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005017_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005017_AD_1.html</id>
    <published>2012-10-19T15:22:40+09:00</published>
    <updated>2012-10-19T15:22:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Portal に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005017_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005017</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005016:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Data Mover &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005016_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005016_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005016_AD_1.html</id>
    <published>2012-10-19T15:20:28+09:00</published>
    <updated>2012-10-19T15:20:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Data Mover に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005016_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005016</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005015:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; PIA Core Technology &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005015_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005015_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005015_AD_1.html</id>
    <published>2012-10-19T15:19:30+09:00</published>
    <updated>2012-10-19T15:19:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、PIA Core Technology に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005015_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005015</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005014:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; PIA Core Technology &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005014_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005014_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005014_AD_1.html</id>
    <published>2012-10-19T15:18:59+09:00</published>
    <updated>2012-10-19T15:18:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、PIA Core Technology に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005014_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005014</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005013:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Security &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005013_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005013_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005013_AD_1.html</id>
    <published>2012-10-19T15:15:34+09:00</published>
    <updated>2012-10-19T15:15:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Security に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005013_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005013</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005012:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Tree Manager &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005012_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005012_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005012_AD_1.html</id>
    <published>2012-10-19T15:14:01+09:00</published>
    <updated>2012-10-19T15:14:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Tree Manager に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005012_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005012</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005011:Oracle PeopleSoft Products &#12398; PeopleSoft Enterprise PeopleTools &#12395;&#12362;&#12369;&#12427; Panel Processor &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005011_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005011_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005011_AD_1.html</id>
    <published>2012-10-19T15:11:55+09:00</published>
    <updated>2012-10-19T15:11:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools には、Panel Processor に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005011_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_enterprise"/>
    <sec:identifier>JVNDB-2012-005011</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005010:Oracle Industry Applications &#12398; Oracle Central Designer &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005010_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005010_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005010_AD_1.html</id>
    <published>2012-10-19T15:07:59+09:00</published>
    <updated>2012-10-19T15:07:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Industry Applications の Oracle Central Designer には、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005010_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:industry_applications"/>
    <sec:identifier>JVNDB-2012-005010</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005009:Oracle Industry Applications &#12398; Oracle Clinical/Remote Data Capture &#12395;&#12362;&#12369;&#12427; HTML Surround &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005009_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005009_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005009_AD_1.html</id>
    <published>2012-10-19T15:07:08+09:00</published>
    <updated>2012-10-19T15:07:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Industry Applications の Oracle Clinical/Remote Data Capture には、HTML Surround に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005009_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:industry_applications"/>
    <sec:identifier>JVNDB-2012-005009</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005008:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005008_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005008_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005008_AD_1.html</id>
    <published>2012-10-19T14:53:17+09:00</published>
    <updated>2012-10-19T14:53:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005008_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005008</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005007:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005007_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005007_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005007_AD_1.html</id>
    <published>2012-10-19T14:52:42+09:00</published>
    <updated>2012-10-19T14:52:42+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005007_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005007</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005006:Oracle Financial Services &#12398; Oracle FLEXCUBE Direct Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005006_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005006_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005006_AD_1.html</id>
    <published>2012-10-19T14:41:00+09:00</published>
    <updated>2012-10-19T14:41:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Direct Banking には、BASE に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005006_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005006</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005005:Oracle Financial Services &#12398; Oracle FLEXCUBE Universal Banking &#12395;&#12362;&#12369;&#12427; BASE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005005_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005005_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005005_AD_1.html</id>
    <published>2012-10-19T14:40:10+09:00</published>
    <updated>2012-10-19T14:40:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Financial Services の Oracle FLEXCUBE Universal Banking には、BASE に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005005_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software"/>
    <sec:identifier>JVNDB-2012-005005</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005004:OTRS &#12395;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005004_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005004_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005004_AD_1.html</id>
    <published>2012-10-19T14:34:40+09:00</published>
    <updated>2012-10-19T14:34:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OTRS には、クロスサイトスクリプティングの脆弱性が存在します。  OTRS には、メール本文の処理に問題があり、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005004_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:otrs:help_desk"/>
    <sec:identifier>JVNDB-2012-005004</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005003:Oracle Solaris 10 &#12395;&#12362;&#12369;&#12427; inetd &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005003_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005003_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005003_AD_1.html</id>
    <published>2012-10-19T11:47:58+09:00</published>
    <updated>2012-10-19T11:47:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 には、inetd に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005003_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-005003</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005002:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Kernel &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005002_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005002_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005002_AD_1.html</id>
    <published>2012-10-19T11:47:21+09:00</published>
    <updated>2012-10-19T11:47:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、SPARC 上で稼働する際、Kernel に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005002_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-005002</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005001:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Kernel &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005001_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005001_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005001_AD_1.html</id>
    <published>2012-10-19T11:46:37+09:00</published>
    <updated>2012-10-19T11:46:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、SPARC T4 サーバ上で稼働する際、Kernel に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005001_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-005001</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-005000:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Kernel/System Call &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005000_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005000_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005000_AD_1.html</id>
    <published>2012-10-19T11:45:55+09:00</published>
    <updated>2012-10-19T11:45:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、Kernel/System Call に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-005000_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-005000</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004999:Oracle Solaris 11 &#12395;&#12362;&#12369;&#12427; Kernel &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004999_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004999_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004999_AD_1.html</id>
    <published>2012-10-19T11:45:26+09:00</published>
    <updated>2012-10-19T11:45:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 11 には、Kernel に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004999_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004999</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004998:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Logical Domain &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004998_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004998_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004998_AD_1.html</id>
    <published>2012-10-19T11:44:12+09:00</published>
    <updated>2012-10-19T11:44:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、SPARC 上で稼動する際、Logical Domain (LDOM) に関する処理に不備があるため、完全性および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004998_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004998</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004997:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Kernel/RCTL &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004997_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004997_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004997_AD_1.html</id>
    <published>2012-10-19T11:43:11+09:00</published>
    <updated>2012-10-19T11:43:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、Kernel/RCTL に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004997_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004997</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004996:Oracle Solaris &#12395;&#12362;&#12369;&#12427; Kernel &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004996_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004996_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004996_AD_1.html</id>
    <published>2012-10-19T11:42:27+09:00</published>
    <updated>2012-10-19T11:42:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris には、Kernel に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004996_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004996</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004995:Oracle SPARC &#12362;&#12424;&#12403; Netra SPARC T &#12471;&#12522;&#12540;&#12474;&#12469;&#12540;&#12496;&#29992; Oracle Sun Products Suite SysFW &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004995_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004995_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004995_AD_1.html</id>
    <published>2012-10-19T11:41:34+09:00</published>
    <updated>2012-10-19T11:41:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle SPARC および Netra SPARC の T3 および T4 サーバ用 Oracle Sun Products Suite SysFW の Integrated Lights Out Manager CLI には、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004995_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:oracle:netra_sparc"/>
    <category term="cpe:/h:oracle:sparc"/>
    <sec:identifier>JVNDB-2012-004995</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004994:Oracle Solaris 11 &#12395;&#12362;&#12369;&#12427; Vino server &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004994_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004994_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004994_AD_1.html</id>
    <published>2012-10-19T11:38:11+09:00</published>
    <updated>2012-10-19T11:38:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 11 には、Vino server に関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004994_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004994</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004993:Oracle Solaris 11 &#12395;&#12362;&#12369;&#12427; Power Management &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004993_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004993_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004993_AD_1.html</id>
    <published>2012-10-19T11:37:07+09:00</published>
    <updated>2012-10-19T11:37:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 11 には、Power Management に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004993_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004993</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004992:Oracle Solaris 11 &#12395;&#12362;&#12369;&#12427; Gnome Display Manager &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004992_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004992_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004992_AD_1.html</id>
    <published>2012-10-19T11:35:57+09:00</published>
    <updated>2012-10-19T11:35:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 11 には、Gnome Display Manager (GDM) に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004992_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004992</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004991:Oracle Solaris 10 &#12362;&#12424;&#12403; 11 &#12395;&#12362;&#12369;&#12427; Gnome Trusted Extension &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004991_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004991_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004991_AD_1.html</id>
    <published>2012-10-19T11:34:46+09:00</published>
    <updated>2012-10-19T11:34:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 および 11 には、Gnome Trusted Extension に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004991_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004991</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004990:Oracle Solaris 11 &#12395;&#12362;&#12369;&#12427; COMSTAR &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004990_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004990_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004990_AD_1.html</id>
    <published>2012-10-19T11:33:31+09:00</published>
    <updated>2012-10-19T11:33:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 11 には、COMSTAR に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004990_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004990</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004989:Oracle Solaris 10 &#12395;&#12362;&#12369;&#12427; Kernel &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004989_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004989_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004989_AD_1.html</id>
    <published>2012-10-19T11:32:12+09:00</published>
    <updated>2012-10-19T11:32:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris 10 には、Kernel に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004989_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004989</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004988:Oracle Solaris &#12395;&#12362;&#12369;&#12427; mailx &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004988_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004988_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004988_AD_1.html</id>
    <published>2012-10-19T11:30:43+09:00</published>
    <updated>2012-10-19T11:30:43+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Solaris には、mailx に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004988_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:oracle:solaris"/>
    <sec:identifier>JVNDB-2012-004988</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004987:Oracle GlassFish Enterprise Server &#12362;&#12424;&#12403; Sun Java System Application Server &#12395;&#12362;&#12369;&#12427; CORBA ORB &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004987_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004987_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004987_AD_1.html</id>
    <published>2012-10-19T11:28:37+09:00</published>
    <updated>2012-10-19T11:28:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle GlassFish Enterprise Server および Sun Java System Application Server には、CORBA ORB に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004987_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:sun_glassfish_enterprise_server"/>
    <category term="cpe:/a:sun:glassfish_enterprise_server"/>
    <category term="cpe:/a:sun:java_system_application_server"/>
    <sec:identifier>JVNDB-2012-004987</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2290:networker_module_for_microsoft_applications: The client in EMC NetWorker Module for Microsoft Ap...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2290_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2290_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2290_AD_1.html</id>
    <published>2012-10-18T00:00:00+09:00</published>
    <updated>2012-10-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The client in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375 allows remote attackers to execute arbitrary code by sending a crafted message over a TCP communication channel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2290_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.2.1"/>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.3"/>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.4"/>
    <sec:identifier>CVE-2012-2290</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2284:networker_module_for_microsoft_applications: The (1) install and (2) upgrade processes in EMC Ne...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2284_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2284_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2284_AD_1.html</id>
    <published>2012-10-18T00:00:00+09:00</published>
    <updated>2012-10-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375, when Exchange Server is used, allow local users to read cleartext administrator credentials via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2284_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.2.1"/>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.3"/>
    <category term="cpe:/a:emc:networker_module_for_microsoft_applications:2.4"/>
    <category term="cpe:/a:microsoft:exchange_server"/>
    <sec:identifier>CVE-2012-2284</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0306:ghost_solutions_suite: Symantec Ghost Solution Suite 2.x through 2.5.1 all...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0306_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0306_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0306_AD_1.html</id>
    <published>2012-10-18T00:00:00+09:00</published>
    <updated>2012-10-19T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Symantec Ghost Solution Suite 2.x through 2.5.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted backup file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0306_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:symantec:ghost_solutions_suite:2.0"/>
    <category term="cpe:/a:symantec:ghost_solutions_suite:2.0.0"/>
    <category term="cpe:/a:symantec:ghost_solutions_suite:2.0.1"/>
    <category term="cpe:/a:symantec:ghost_solutions_suite:2.5"/>
    <sec:identifier>CVE-2012-0306</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004986:Oracle Database Server &#12398; Core RDBMS &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004986_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004986_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004986_AD_1.html</id>
    <published>2012-10-18T18:17:24+09:00</published>
    <updated>2012-10-18T18:17:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Database Server の Core RDBMS は、Unix および Linux プラットフォーム上で実行する場合、完全性および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004986_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server"/>
    <sec:identifier>JVNDB-2012-004986</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004985:Oracle Database Server &#12398; Core RDBMS &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004985_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004985_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004985_AD_1.html</id>
    <published>2012-10-18T18:16:39+09:00</published>
    <updated>2012-10-18T18:16:39+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Database Server の Core RDBMS には、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004985_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server"/>
    <sec:identifier>JVNDB-2012-004985</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004984:Oracle Database Server &#12398; Core RDBMS &#12395;&#12362;&#12369;&#12427; flashback archive &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004984_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004984_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004984_AD_1.html</id>
    <published>2012-10-18T18:16:04+09:00</published>
    <updated>2012-10-18T18:16:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Database Server の Core RDBMS には、flashback archive に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004984_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server"/>
    <sec:identifier>JVNDB-2012-004984</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004983:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JMX &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004983_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004983_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004983_AD_1.html</id>
    <published>2012-10-18T18:11:45+09:00</published>
    <updated>2012-10-18T18:11:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JMX に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004983_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004983</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004982:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427;&#12521;&#12452;&#12502;&#12521;&#12522;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004982_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004982_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004982_AD_1.html</id>
    <published>2012-10-18T18:10:44+09:00</published>
    <updated>2012-10-18T18:10:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、ライブラリに関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004982_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004982</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004981:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Beans &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004981_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004981_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004981_AD_1.html</id>
    <published>2012-10-18T18:10:07+09:00</published>
    <updated>2012-10-18T18:10:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Beans に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004981_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004981</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004980:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Beans &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004980_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004980_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004980_AD_1.html</id>
    <published>2012-10-18T18:08:41+09:00</published>
    <updated>2012-10-18T18:08:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Beans に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004980_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004980</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004979:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Networking &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004979_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004979_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004979_AD_1.html</id>
    <published>2012-10-18T18:08:08+09:00</published>
    <updated>2012-10-18T18:08:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Networking に関する処理に不備があるため、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004979_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <sec:identifier>JVNDB-2012-004979</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004978:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Swing &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004978_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004978_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004978_AD_1.html</id>
    <published>2012-10-18T17:47:33+09:00</published>
    <updated>2012-10-18T17:47:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Swing に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004978_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004978</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004977:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; 2D &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004977_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004977_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004977_AD_1.html</id>
    <published>2012-10-18T17:46:49+09:00</published>
    <updated>2012-10-18T17:46:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、2D に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004977_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:javafx"/>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004977</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004976:Oracle Java SE &#12398; JavaFX &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004976_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004976_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004976_AD_1.html</id>
    <published>2012-10-18T17:46:18+09:00</published>
    <updated>2012-10-18T17:46:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の JavaFX には、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004976_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:javafx"/>
    <sec:identifier>JVNDB-2012-004976</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004975:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JSSE &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004975_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004975_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004975_AD_1.html</id>
    <published>2012-10-18T17:44:51+09:00</published>
    <updated>2012-10-18T17:44:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JSSE に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004975_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004975</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004974:Oracle Java SE &#12398; JavaFX &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004974_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004974_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004974_AD_1.html</id>
    <published>2012-10-18T17:43:30+09:00</published>
    <updated>2012-10-18T17:43:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の JavaFX には、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004974_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:javafx"/>
    <sec:identifier>JVNDB-2012-004974</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004973:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427;&#12521;&#12452;&#12502;&#12521;&#12522;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004973_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004973_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004973_AD_1.html</id>
    <published>2012-10-18T17:43:00+09:00</published>
    <updated>2012-10-18T17:43:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、ライブラリに関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004973_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <sec:identifier>JVNDB-2012-004973</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004972:Oracle Java SE &#12398; JavaFX &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004972_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004972_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004972_AD_1.html</id>
    <published>2012-10-18T17:42:04+09:00</published>
    <updated>2012-10-18T17:42:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の JavaFX には、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004972_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:javafx"/>
    <sec:identifier>JVNDB-2012-004972</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004971:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Security &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004971_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004971_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004971_AD_1.html</id>
    <published>2012-10-18T17:41:09+09:00</published>
    <updated>2012-10-18T17:41:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Security に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004971_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004971</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004970:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JAX-WS &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004970_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004970_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004970_AD_1.html</id>
    <published>2012-10-18T17:39:45+09:00</published>
    <updated>2012-10-18T17:39:45+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JAX-WS に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004970_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004970</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004969:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JMX &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004969_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004969_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004969_AD_1.html</id>
    <published>2012-10-18T17:39:09+09:00</published>
    <updated>2012-10-18T17:39:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JMX に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004969_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004969</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004968:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JAX-WS &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004968_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004968_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004968_AD_1.html</id>
    <published>2012-10-18T17:38:17+09:00</published>
    <updated>2012-10-18T17:38:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JAX-WS に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004968_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004968</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004967:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427;&#12521;&#12452;&#12502;&#12521;&#12522;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004967_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004967_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004967_AD_1.html</id>
    <published>2012-10-18T17:37:21+09:00</published>
    <updated>2012-10-18T17:37:21+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、ライブラリに関する処理に不備があるため、完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004967_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004967</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004966:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Security &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004966_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004966_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004966_AD_1.html</id>
    <published>2012-10-18T17:36:33+09:00</published>
    <updated>2012-10-18T17:36:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Security に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004966_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004966</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004965:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JMX &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004965_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004965_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004965_AD_1.html</id>
    <published>2012-10-18T17:35:15+09:00</published>
    <updated>2012-10-18T17:35:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JMX に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004965_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004965</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004964:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JMX &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004964_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004964_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004964_AD_1.html</id>
    <published>2012-10-18T17:34:30+09:00</published>
    <updated>2012-10-18T17:34:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JMX に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004964_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004964</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004963:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Concurrency &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004963_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004963_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004963_AD_1.html</id>
    <published>2012-10-18T17:33:50+09:00</published>
    <updated>2012-10-18T17:33:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Concurrency に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004963_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004963</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004962:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427;&#12521;&#12452;&#12502;&#12521;&#12522;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004962_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004962_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004962_AD_1.html</id>
    <published>2012-10-18T17:32:18+09:00</published>
    <updated>2012-10-18T17:32:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、ライブラリに関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004962_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004962</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004961:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Deployment &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004961_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004961_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004961_AD_1.html</id>
    <published>2012-10-18T17:31:38+09:00</published>
    <updated>2012-10-18T17:31:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Deployment に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004961_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <sec:identifier>JVNDB-2012-004961</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004960:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Hotspot &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004960_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004960_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004960_AD_1.html</id>
    <published>2012-10-18T17:28:48+09:00</published>
    <updated>2012-10-18T17:28:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Hotspot に関する処理に不備があるため、機密性および完全性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004960_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004960</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004959:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427;&#12521;&#12452;&#12502;&#12521;&#12522;&#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004959_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004959_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004959_AD_1.html</id>
    <published>2012-10-18T17:28:02+09:00</published>
    <updated>2012-10-18T17:28:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、ライブラリに関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004959_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004959</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004958:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Deployment &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004958_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004958_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004958_AD_1.html</id>
    <published>2012-10-18T17:27:08+09:00</published>
    <updated>2012-10-18T17:27:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Deployment に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004958_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004958</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004957:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; JMX &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004957_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004957_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004957_AD_1.html</id>
    <published>2012-10-18T17:25:33+09:00</published>
    <updated>2012-10-18T17:25:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、JMX に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004957_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004957</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004956:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Deployment &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004956_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004956_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004956_AD_1.html</id>
    <published>2012-10-18T17:25:04+09:00</published>
    <updated>2012-10-18T17:25:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Deployment に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004956_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004956</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004955:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; Deployment &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004955_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004955_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004955_AD_1.html</id>
    <published>2012-10-18T17:24:25+09:00</published>
    <updated>2012-10-18T17:24:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、Deployment に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004955_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004955</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004954:Oracle Java SE &#12398; Java Runtime Environment &#12395;&#12362;&#12369;&#12427; 2D &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004954_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004954_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004954_AD_1.html</id>
    <published>2012-10-18T17:23:05+09:00</published>
    <updated>2012-10-18T17:23:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle Java SE の Java Runtime Environment (JRE) には、2D に関する処理に不備があるため、機密性、完全性、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004954_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:javafx"/>
    <category term="cpe:/a:sun:jdk"/>
    <category term="cpe:/a:sun:jre"/>
    <category term="cpe:/a:sun:sdk"/>
    <category term="cpe:/o:apple:mac_os_x"/>
    <category term="cpe:/o:apple:mac_os_x_server"/>
    <sec:identifier>JVNDB-2012-004954</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004953:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server Replication &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004953_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004953_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004953_AD_1.html</id>
    <published>2012-10-18T16:51:52+09:00</published>
    <updated>2012-10-18T16:51:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server Replication に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004953_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004953</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004952:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server Optimizer &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004952_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004952_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004952_AD_1.html</id>
    <published>2012-10-18T16:49:44+09:00</published>
    <updated>2012-10-18T16:49:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server Optimizer に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004952_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004952</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004951:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004951_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004951_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004951_AD_1.html</id>
    <published>2012-10-18T16:40:58+09:00</published>
    <updated>2012-10-18T16:40:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004951_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004951</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004950:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; InnoDB Plugin &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004950_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004950_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004950_AD_1.html</id>
    <published>2012-10-18T16:40:24+09:00</published>
    <updated>2012-10-18T16:40:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、InnoDB Plugin に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004950_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004950</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004949:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server Full Text Search &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004949_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004949_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004949_AD_1.html</id>
    <published>2012-10-18T16:37:51+09:00</published>
    <updated>2012-10-18T16:37:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server Full Text Search に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004949_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004949</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004948:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; InnoDB &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004948_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004948_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004948_AD_1.html</id>
    <published>2012-10-18T16:37:23+09:00</published>
    <updated>2012-10-18T16:37:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、InnoDB に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004948_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004948</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004947:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Information Schema &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004947_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004947_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004947_AD_1.html</id>
    <published>2012-10-18T16:36:52+09:00</published>
    <updated>2012-10-18T16:36:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Information Schema に関する処理に不備があるため、機密性、完全性、および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004947_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004947</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004946:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server Installation &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004946_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004946_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004946_AD_1.html</id>
    <published>2012-10-18T16:36:16+09:00</published>
    <updated>2012-10-18T16:36:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server Installation に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004946_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004946</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004945:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Protocol &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004945_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004945_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004945_AD_1.html</id>
    <published>2012-10-18T16:35:49+09:00</published>
    <updated>2012-10-18T16:35:49+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Protocol に関する処理に不備があるため、機密性、完全性、および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004945_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004945</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004944:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004944_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004944_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004944_AD_1.html</id>
    <published>2012-10-18T16:35:08+09:00</published>
    <updated>2012-10-18T16:35:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004944_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004944</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004943:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server Optimizer &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004943_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004943_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004943_AD_1.html</id>
    <published>2012-10-18T16:34:35+09:00</published>
    <updated>2012-10-18T16:34:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server Optimizer に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004943_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004943</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004942:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; MySQL Client &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004942_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004942_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004942_AD_1.html</id>
    <published>2012-10-18T16:34:06+09:00</published>
    <updated>2012-10-18T16:34:06+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、MySQL Client に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004942_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004942</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004941:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; MySQL Client &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004941_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004941_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004941_AD_1.html</id>
    <published>2012-10-18T16:33:30+09:00</published>
    <updated>2012-10-18T16:33:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、MySQL Client に関する処理に不備があるため、完全性および可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004941_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004941</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004940:Oracle MySQL &#12398; MySQL Server &#12395;&#12362;&#12369;&#12427; Server &#12398;&#20966;&#29702;&#12395;&#38306;&#12377;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004940_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004940_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004940_AD_1.html</id>
    <published>2012-10-18T16:33:00+09:00</published>
    <updated>2012-10-18T16:33:00+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Oracle MySQL の MySQL Server には、Server に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004940_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:mysql"/>
    <sec:identifier>JVNDB-2012-004940</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3139:e-business_suite: Unspecified vulnerability in the Oracle Application...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3139_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3139_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3139_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-18T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity, related to Signon (local and SSO).&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3139_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <sec:identifier>CVE-2012-3139</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004939:ZENworks Asset Management &#12395;&#24773;&#22577;&#28431;&#12360;&#12356;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004939_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004939_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004939_AD_1.html</id>
    <published>2012-10-17T16:08:02+09:00</published>
    <updated>2012-10-17T16:08:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Novell が提供する ZENworks Asset Management には、情報漏えいの脆弱性が存在します。  Novell が提供する ZENworks Asset Management のウェブ管理画面には、情報漏えいの脆弱性が存在します。  なお、本脆弱性を使用した攻撃コードが公開されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004939_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:novell:zenworks_asset_management"/>
    <sec:identifier>JVNDB-2012-004939</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5095:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5095_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5095_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5095_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to inetd.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5095_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <sec:identifier>CVE-2012-5095</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5094:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5094_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5094_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5094_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM for Process component in Oracle Supply Chain Products Suite 5.2.2 and 6.1.0.0 allows remote attackers to affect confidentiality via unknown vectors related to User Group Management.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5094_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:5.2.2"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0.0"/>
    <sec:identifier>CVE-2012-5094</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5093:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5093_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5093_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5093_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM for Process component in Oracle Supply Chain Products Suite 5.2.2 and 6.1.0.0 allows remote attackers to affect integrity via unknown vectors related to Global Spec Management.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5093_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:5.2.2"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0.0"/>
    <sec:identifier>CVE-2012-5093</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5092:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5092_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5092_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5092_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM for Process component in Oracle Supply Chain Products Suite 5.2.2 and 6.1.0.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Supply Chain Relationship Management.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5092_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:5.2.2"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0"/>
    <sec:identifier>CVE-2012-5092</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5091:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile Produ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5091_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5091_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5091_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile Product Supplier Collaboration for Process component in Oracle Supply Chain Products Suite 5.2.2 and 6.1.0.0 allows remote attackers to affect confidentiality via unknown vectors related to Supplier Portal.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5091_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:5.2.2"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0.0"/>
    <sec:identifier>CVE-2012-5091</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5090:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM f...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5090_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5090_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5090_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM for Process component in Oracle Supply Chain Products Suite 5.2.2 and 6.1.0.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Document Reference Library.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5090_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:5.2.2"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0"/>
    <sec:identifier>CVE-2012-5090</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5066:industry_applications: Unspecified vulnerability in the Oracle Central Des...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5066_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5066_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5066_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Central Designer component in Oracle Industry Applications 1.3, 1.4, and 1.4.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5066_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:industry_applications:1.3"/>
    <category term="cpe:/a:oracle:industry_applications:1.4"/>
    <category term="cpe:/a:oracle:industry_applications:1.4.2"/>
    <sec:identifier>CVE-2012-5066</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5065:fusion_middleware: Unspecified vulnerability in the Oracle WebCenter S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5065_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5065_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5065_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows local users to affect integrity via unknown vectors related to ImagePicker.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5065_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.2"/>
    <sec:identifier>CVE-2012-5065</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5064:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5064_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5064_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5064_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, and 11.0.0 through 11.2.0 allows remote authenticated users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5064_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <sec:identifier>CVE-2012-5064</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5063:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5063_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5063_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5063_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, 11.0.0 through 11.4.0, and 12.0.0 allows remote attackers to affect integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5063_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.4.0"/>
    <category term="cpe:/a:oracle:financial_services_software:12"/>
    <sec:identifier>CVE-2012-5063</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5061:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5061_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5061_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5061_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, 11.0.0 through 11.4.0, and 12.0.0 allows remote authenticated users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5061_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.4.0"/>
    <category term="cpe:/a:oracle:financial_services_software:12"/>
    <sec:identifier>CVE-2012-5061</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5058:e-business_suite: Unspecified vulnerability in the Oracle iStore comp...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5058_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5058_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5058_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to the Web interface.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5058_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.1"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-5058</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3230:siebel_crm: Unspecified vulnerability in the Siebel UI Framewor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3230_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3230_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3230_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 allows remote attackers to affect confidentiality via unknown vectors related to Portal Framework.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3230_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:siebel_crm:8.1.1"/>
    <sec:identifier>CVE-2012-3230</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3229:siebel_crm: Unspecified vulnerability in the Siebel UI Framewor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3229_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3229_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3229_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Siebel Documentation.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3229_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:siebel_crm:8.1.1"/>
    <sec:identifier>CVE-2012-3229</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3228:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3228_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3228_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3228_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, 6.0.1, and 6.2.0 allows remote authenticated users to affect integrity and availability, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3228_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:5.0.5"/>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <category term="cpe:/a:oracle:financial_services_software:6.0.1"/>
    <category term="cpe:/a:oracle:financial_services_software:6.2.0"/>
    <sec:identifier>CVE-2012-3228</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3227:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3227_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3227_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3227_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, and 11.0.0 through 11.2.0 allows remote authenticated users to affect integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3227_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <sec:identifier>CVE-2012-3227</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3226:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3226_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3226_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3226_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, 11.0.0 through 11.4.0, and 12.0.0 allows remote authenticated users to affect confidentiality and integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3226_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.4.0"/>
    <category term="cpe:/a:oracle:financial_services_software:12.0.0"/>
    <sec:identifier>CVE-2012-3226</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3225:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3225_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3225_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3225_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.3.0 through 5.3.4 allows remote authenticated users to affect confidentiality and integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3225_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <sec:identifier>CVE-2012-3225</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3224:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3224_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3224_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3224_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.1.0, 5.2.0, and 5.3.0 through 5.3.4 allows remote authenticated users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3224_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <sec:identifier>CVE-2012-3224</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3223:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3223_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3223_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3223_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, and 6.0.1 allows remote authenticated users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3223_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:5.0.5"/>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <category term="cpe:/a:oracle:financial_services_software:6.0.1"/>
    <sec:identifier>CVE-2012-3223</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3222:e-business_suite: Unspecified vulnerability in the Oracle iRecruitmen...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3222_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3222_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3222_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect availability via unknown vectors related to Signon.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3222_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.1"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3222</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3221:virtualization: Unspecified vulnerability in the Oracle VM Virtual ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3221_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3221_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3221_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 3.2, 4.0, and 4.1 allows local users to affect availability via unknown vectors related to VirtualBox Core.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3221_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:virtualization:3.2"/>
    <category term="cpe:/a:oracle:virtualization:4.0"/>
    <category term="cpe:/a:oracle:virtualization:4.1"/>
    <sec:identifier>CVE-2012-3221</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3217:fusion_middleware: Unspecified vulnerability in the Oracle Outside In ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3217_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3217_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3217_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7.0 allows context-dependent attackers to affect availability, related to Outside In HTML Export SDK.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3217_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:8.3.7.0"/>
    <sec:identifier>CVE-2012-3217</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3215:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3215_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3215_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3215_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11, when running on SPARC, allows local users to affect confidentiality via unknown vectors related to Kernel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3215_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:oracle:sparc:-"/>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3215</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3214:fusion_middleware: Unspecified vulnerability in the Oracle Outside In ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3214_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3214_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3214_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7.0 allows context-dependent attackers to affect availability via unknown vectors related to Outside In Filters.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3214_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:8.3.7.0"/>
    <sec:identifier>CVE-2012-3214</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3212:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3212_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3212_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3212_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11, when running on SPARC T4 servers, allows local users to affect availability via unknown vectors related to Kernel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3212_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3212</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3211:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3211_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3211_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3211_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect availability via unknown vectors related to Kernel/System Call.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3211_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3211</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3210:sunos: Unspecified vulnerability in Oracle Sun Solaris 11 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3210_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3210_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3210_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability via unknown vectors related to Kernel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3210_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3210</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3209:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3209_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3209_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3209_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11, when running on SPARC, allows local users to affect integrity and availability via unknown vectors related to Logical Domain (LDOM).&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3209_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:oracle:sparc:-"/>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3209</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3208:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3208_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3208_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3208_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect availability, related to Kernel/RCTL.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3208_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3208</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3207:sunos: Unspecified vulnerability in Oracle Sun Solaris 9, ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3207_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3207_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3207_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 9, 10, and 11 allows local users to affect availability via unknown vectors related to Kernel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3207_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <category term="cpe:/o:sun:sunos:5.9"/>
    <sec:identifier>CVE-2012-3207</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3206:netra_sparc_t3-1, netra_sparc_t3-1b, netra_sparc_t4-1, netra_sparc_t4-2, netra_sp...: Unspecified vulnerability in the Integrated Lights ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3206_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3206_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3206_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Integrated Lights Out Manager CLI in Oracle Sun Products Suite SysFW 8.2.0.a for SPARC and Netra SPARC T3 and T4-based servers, and other versions and servers, allows local users to affect confidentiality via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3206_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:oracle:netra_sparc_t3-1:-"/>
    <category term="cpe:/h:oracle:netra_sparc_t3-1b:-"/>
    <category term="cpe:/h:oracle:netra_sparc_t4-1:-"/>
    <category term="cpe:/h:oracle:netra_sparc_t4-2:-"/>
    <category term="cpe:/h:oracle:netra_sparc_t4-2b:-"/>
    <category term="cpe:/h:oracle:sparc_t3-1:-"/>
    <category term="cpe:/h:oracle:sparc_t3-1b:-"/>
    <category term="cpe:/h:oracle:sparc_t3-2:-"/>
    <category term="cpe:/h:oracle:sparc_t3-4:-"/>
    <category term="cpe:/h:oracle:sparc_t4-1:-"/>
    <category term="cpe:/h:oracle:sparc_t4-1b:-"/>
    <category term="cpe:/h:oracle:sparc_t4-4:-"/>
    <sec:identifier>CVE-2012-3206</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3205:sunos: Unspecified vulnerability in Oracle Sun Solaris 11 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3205_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3205_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3205_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity via unknown vectors related to Vino server.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3205_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3205</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3204:sunos: Unspecified vulnerability in Oracle Sun Solaris 11 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3204_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3204_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3204_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Power Management.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3204_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3204</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3203:sunos: Unspecified vulnerability in Oracle Sun Solaris 11 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3203_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3203_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3203_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability, related to Gnome Display Manager GDM.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3203_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3203</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3202:fusion_middleware: Multiple unspecified vulnerabilities in the Oracle ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3202_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3202_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3202_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple unspecified vulnerabilities in the Oracle JRockit component in Oracle Fusion Middleware 28.2.4 and earlier, and 27.7.3 and earlier, when using JDK/JRE 5 or 6, allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this overlaps CVE-2012-5083, CVE-2012-1531, CVE-2012-5081, and CVE-2012-5085.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3202_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.2.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.3.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.4.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.5.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.4.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.3.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.3.4"/>
    <category term="cpe:/a:oracle:fusion_middleware:10.3.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.1.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.2.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.3.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.4.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.5.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.2.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:27.7.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:27.7.3 and previous versions"/>
    <category term="cpe:/a:oracle:fusion_middleware:28.2.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:28.2.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:28.2.4 and previous versions"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:8.3.2.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:8.3.5.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:8.3.7.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:9.2.4"/>
    <category term="cpe:/a:sun:jdk:1.5.0"/>
    <category term="cpe:/a:sun:jdk:1.6.0"/>
    <category term="cpe:/a:sun:jre:1.5.0"/>
    <category term="cpe:/a:sun:jre:1.6.0"/>
    <sec:identifier>CVE-2012-3202</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3201:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3201_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3201_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3201_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise Campus Solutions component in Oracle PeopleSoft Products 9.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Self-Service (Student Records).&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3201_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:9.0"/>
    <sec:identifier>CVE-2012-3201</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3200:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM F...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3200_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3200_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3200_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM Framework component in Oracle Supply Chain Products Suite 9.3.1.1 allows remote authenticated users to affect confidentiality, related to ROLESPRV.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3200_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:9.3.1.1"/>
    <sec:identifier>CVE-2012-3200</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3199:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3199_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3199_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3199_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Gnome Trusted Extension.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3199_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3199</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3198:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3198_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3198_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3198_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.51 and 8.52 allows remote authenticated users to affect availability via unknown vectors related to Query.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3198_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3198</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3197:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3197_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3197_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3197_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Replication.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3197_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3197</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3196:e-business_suite: Unspecified vulnerability in the Oracle Human Resou...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3196_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3196_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3196_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and availability, related to PDF generation.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3196_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.1"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3196</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3195:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3195_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3195_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3195_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows remote authenticated users to affect confidentiality via unknown vectors related to Portal.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3195_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.50"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3195</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3194:fusion_middleware: Unspecified vulnerability in the Oracle BI Publishe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3194_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3194_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3194_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle BI Publisher component in Oracle Fusion Middleware 10.1.3.4.2, 11.1.1.5.0, 11.1.1.6.0, and 11.1.1.6.2 allows remote attackers to affect integrity via unknown vectors related to Administration.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3194_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.4.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.5.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.2"/>
    <sec:identifier>CVE-2012-3194</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3193:fusion_middleware: Unspecified vulnerability in the Oracle BI Publishe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3193_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3193_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3193_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle BI Publisher component in Oracle Fusion Middleware 10.3.4.2, 11.1.1.5.0, 11.1.1.6.0, and 11.1.1.6.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Administration.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3193_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.4.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.5.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.2"/>
    <sec:identifier>CVE-2012-3193</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3191:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3191_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3191_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3191_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows remote authenticated users to affect availability via unknown vectors related to Data Mover.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3191_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.50"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3191</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3189:sunos: Unspecified vulnerability in Oracle Sun Solaris 11 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3189_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3189_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3189_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability, related to COMSTAR.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3189_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <sec:identifier>CVE-2012-3189</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3188:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3188_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3188_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3188_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50 and 8.51 allows remote authenticated users to affect integrity, related to PIA Core Technology.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3188_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.50"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <sec:identifier>CVE-2012-3188</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3187:sunos: Unspecified vulnerability in Oracle Sun Solaris 10 ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3187_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3187_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3187_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Kernel.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3187_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <sec:identifier>CVE-2012-3187</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3186:fusion_middleware: Unspecified vulnerability in the Oracle WebCenter S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3186_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3186_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3186_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3186_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.2"/>
    <sec:identifier>CVE-2012-3186</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3185:fusion_middleware: Unspecified vulnerability in the Oracle WebCenter S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3185_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3185_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3185_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3185_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.2"/>
    <sec:identifier>CVE-2012-3185</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3184:fusion_middleware: Unspecified vulnerability in the Oracle WebCenter S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3184_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3184_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3184_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote attackers to affect integrity via unknown vectors related to Advanced UI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3184_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.2"/>
    <sec:identifier>CVE-2012-3184</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3183:fusion_middleware: Unspecified vulnerability in the Oracle WebCenter S...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3183_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3183_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3183_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3183_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:6.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.2"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.0.3"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.5"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.1"/>
    <category term="cpe:/a:oracle:fusion_middleware:7.6.2"/>
    <sec:identifier>CVE-2012-3183</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3182:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3182_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3182_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3182_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 allows remote attackers to affect integrity, related to PIA Core Technology.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3182_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3182</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3181:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3181_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3181_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3181_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows remote authenticated users to affect availability via unknown vectors related to Security.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3181_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.50"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3181</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3180:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3180_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3180_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3180_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3180_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.1.65 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26"/>
    <category term="cpe:/a:oracle:mysql:5.5.27 and previous versions"/>
    <sec:identifier>CVE-2012-3180</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3179:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3179_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3179_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3179_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows remote authenticated users to affect integrity via unknown vectors related to Tree Manager.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3179_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.50"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.51"/>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3179</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3177:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3177_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3177_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3177_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3177_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.1.65 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26"/>
    <category term="cpe:/a:oracle:mysql:5.5.27 and previous versions"/>
    <sec:identifier>CVE-2012-3177</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3176:peoplesoft_products: Unspecified vulnerability in the PeopleSoft Enterpr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3176_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3176_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3176_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 allows remote authenticated users to affect integrity via unknown vectors related to Panel Processor.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3176_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:peoplesoft_products:8.52"/>
    <sec:identifier>CVE-2012-3176</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3175:fusion_middleware: Unspecified vulnerability in the Oracle Application...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3175_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3175_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3175_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Application Server Single Sign-On component in Oracle Fusion Middleware 10.1.4.3.0 allows remote attackers to affect integrity via unknown vectors related to Redirects.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3175_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.4.3"/>
    <sec:identifier>CVE-2012-3175</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3173:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3173_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3173_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3173_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote authenticated users to affect availability via unknown vectors related to InnoDB Plugin.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3173_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <sec:identifier>CVE-2012-3173</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3171:e-business_suite: Unspecified vulnerability in the Oracle Application...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3171_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3171_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3171_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows remote attackers to affect confidentiality via unknown vectors related to Autoconfig Templates.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3171_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3171</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3167:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3167_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3167_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3167_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Full Text Search.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3167_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <sec:identifier>CVE-2012-3167</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3166:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3166_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3166_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3166_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote authenticated users to affect availability via unknown vectors related to InnoDB.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3166_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.63 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <sec:identifier>CVE-2012-3166</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3165:sunos: Unspecified vulnerability in Oracle Sun Solaris 8, ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3165_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3165_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3165_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect confidentiality and integrity via unknown vectors related to mailx.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3165_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:sun:sunos:5.10"/>
    <category term="cpe:/o:sun:sunos:5.11"/>
    <category term="cpe:/o:sun:sunos:5.8"/>
    <category term="cpe:/o:sun:sunos:5.9"/>
    <sec:identifier>CVE-2012-3165</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3164:e-business_suite: Unspecified vulnerability in the Oracle Marketing c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3164_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3164_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3164_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Marketing component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote authenticated users to affect integrity via unknown vectors related to Publish Item.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3164_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.1"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3164</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3163:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3163_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3163_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3163_AD_1.html</id>
    <published>2012-10-17T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Information Schema.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3163_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3163</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3162:e-business_suite: Unspecified vulnerability in the Oracle Application...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3162_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3162_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3162_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.3 allows local users to affect confidentiality, related to MDS loading.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3162_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3162</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3161:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM F...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3161_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3161_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3161_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM Framework component in Oracle Supply Chain Products Suite 9.3.1.1 allows remote attackers to affect integrity via unknown vectors related to Web Client (CS).&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3161_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:9.3.1.1"/>
    <sec:identifier>CVE-2012-3161</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3160:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3160_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3160_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3160_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows local users to affect confidentiality via unknown vectors related to Server Installation.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3160_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.1.65 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26"/>
    <category term="cpe:/a:oracle:mysql:5.5.27 and previous versions"/>
    <sec:identifier>CVE-2012-3160</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3158:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3158_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3158_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3158_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Protocol.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3158_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3158</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3157:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3157_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3157_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3157_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, 6.0.1, 6.2.0, and 12 allows remote authenticated users to affect integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3157_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:12"/>
    <category term="cpe:/a:oracle:financial_services_software:5.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:5.0.5"/>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <category term="cpe:/a:oracle:financial_services_software:6.0.1"/>
    <category term="cpe:/a:oracle:financial_services_software:6.2.0"/>
    <sec:identifier>CVE-2012-3157</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3156:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3156_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3156_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3156_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.25 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3156_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <sec:identifier>CVE-2012-3156</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3155:glassfish_server, java_system_application_server: Unspecified vulnerability in the CORBA ORB componen...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3155_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3155_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3155_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the CORBA ORB component in Sun GlassFish Enterprise Server 2.1.1, Oracle GlassFish Server 3.0.1 and 3.1.2, and Sun Java System Application Server 8.1 and 8.2 allows remote attackers to affect availability, related to CORBA ORB.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3155_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:glassfish_server:2.1.1"/>
    <category term="cpe:/a:oracle:glassfish_server:3.0.1"/>
    <category term="cpe:/a:oracle:glassfish_server:3.1.2"/>
    <category term="cpe:/a:sun:java_system_application_server:8.1"/>
    <category term="cpe:/a:sun:java_system_application_server:8.2"/>
    <sec:identifier>CVE-2012-3155</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3154:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM F...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3154_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3154_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3154_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM Framework component in Oracle Supply Chain Products Suite 9.3.1.0 allows remote authenticated users to affect confidentiality, related to ATTACH.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3154_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:9.3.1"/>
    <sec:identifier>CVE-2012-3154</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3153:fusion_middleware: Unspecified vulnerability in the Oracle Reports Dev...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3153_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3153_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3153_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Servlet.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3153_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.4"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.2.0"/>
    <sec:identifier>CVE-2012-3153</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3152:fusion_middleware: Unspecified vulnerability in the Oracle Reports Dev...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3152_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3152_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3152_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Report Server Component.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3152_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.4.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.2.0"/>
    <sec:identifier>CVE-2012-3152</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3151:database_server: Unspecified vulnerability in the Core RDBMS compone...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3151_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3151_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3151_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Unix and Linux platforms, allows local users to affect integrity and availability via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3151_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server:10.2.0.4"/>
    <category term="cpe:/a:oracle:database_server:10.2.0.5"/>
    <category term="cpe:/a:oracle:database_server:11.1.0.7"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.2"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.3"/>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>CVE-2012-3151</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3150:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3150_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3150_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3150_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3150_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.64 and previous versions"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3150</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3149:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3149_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3149_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3149_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote authenticated users to affect confidentiality, related to MySQL Client.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3149_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3149</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3148:e-business_suite: Unspecified vulnerability in the Oracle Field Servi...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3148_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3148_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3148_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.3 allows remote authenticated users to affect integrity, related to Wireless/WAP upload.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3148_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3148</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3147:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3147_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3147_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3147_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote attackers to affect integrity and availability, related to MySQL Client.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3147_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3147</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3146:database_server: Unspecified vulnerability in the Core RDBMS compone...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3146_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3146_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3146_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3146_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server:10.2.0.3"/>
    <category term="cpe:/a:oracle:database_server:10.2.0.4"/>
    <category term="cpe:/a:oracle:database_server:10.2.0.5"/>
    <category term="cpe:/a:oracle:database_server:11.1.0.7"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.2"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.3"/>
    <sec:identifier>CVE-2012-3146</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3145:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3145_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3145_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3145_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, and 6.2.0 allows local users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3145_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:5.0.5"/>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <category term="cpe:/a:oracle:financial_services_software:6.2.0"/>
    <sec:identifier>CVE-2012-3145</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3144:mysql: Unspecified vulnerability in the MySQL Server compo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3144_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3144_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3144_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3144_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql:3.20"/>
    <category term="cpe:/a:mysql:mysql:3.20.32a"/>
    <category term="cpe:/a:mysql:mysql:3.21"/>
    <category term="cpe:/a:mysql:mysql:3.22"/>
    <category term="cpe:/a:mysql:mysql:3.22.26"/>
    <category term="cpe:/a:mysql:mysql:3.22.27"/>
    <category term="cpe:/a:mysql:mysql:3.22.28"/>
    <category term="cpe:/a:mysql:mysql:3.22.29"/>
    <category term="cpe:/a:mysql:mysql:3.22.30"/>
    <category term="cpe:/a:mysql:mysql:3.22.32"/>
    <category term="cpe:/a:mysql:mysql:3.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:3.23.1"/>
    <category term="cpe:/a:mysql:mysql:3.23.10"/>
    <category term="cpe:/a:mysql:mysql:3.23.11"/>
    <category term="cpe:/a:mysql:mysql:3.23.12"/>
    <category term="cpe:/a:mysql:mysql:3.23.13"/>
    <category term="cpe:/a:mysql:mysql:3.23.14"/>
    <category term="cpe:/a:mysql:mysql:3.23.15"/>
    <category term="cpe:/a:mysql:mysql:3.23.16"/>
    <category term="cpe:/a:mysql:mysql:3.23.17"/>
    <category term="cpe:/a:mysql:mysql:3.23.18"/>
    <category term="cpe:/a:mysql:mysql:3.23.19"/>
    <category term="cpe:/a:mysql:mysql:3.23.2"/>
    <category term="cpe:/a:mysql:mysql:3.23.20:beta"/>
    <category term="cpe:/a:mysql:mysql:3.23.21"/>
    <category term="cpe:/a:mysql:mysql:3.23.22"/>
    <category term="cpe:/a:mysql:mysql:3.23.23"/>
    <category term="cpe:/a:mysql:mysql:3.23.24"/>
    <category term="cpe:/a:mysql:mysql:3.23.25"/>
    <category term="cpe:/a:mysql:mysql:3.23.26"/>
    <category term="cpe:/a:mysql:mysql:3.23.27"/>
    <category term="cpe:/a:mysql:mysql:3.23.28"/>
    <category term="cpe:/a:mysql:mysql:3.23.28:gamma"/>
    <category term="cpe:/a:mysql:mysql:3.23.29"/>
    <category term="cpe:/a:mysql:mysql:3.23.3"/>
    <category term="cpe:/a:mysql:mysql:3.23.30"/>
    <category term="cpe:/a:mysql:mysql:3.23.31"/>
    <category term="cpe:/a:mysql:mysql:3.23.32"/>
    <category term="cpe:/a:mysql:mysql:3.23.33"/>
    <category term="cpe:/a:mysql:mysql:3.23.34"/>
    <category term="cpe:/a:mysql:mysql:3.23.35"/>
    <category term="cpe:/a:mysql:mysql:3.23.36"/>
    <category term="cpe:/a:mysql:mysql:3.23.37"/>
    <category term="cpe:/a:mysql:mysql:3.23.38"/>
    <category term="cpe:/a:mysql:mysql:3.23.39"/>
    <category term="cpe:/a:mysql:mysql:3.23.4"/>
    <category term="cpe:/a:mysql:mysql:3.23.40"/>
    <category term="cpe:/a:mysql:mysql:3.23.41"/>
    <category term="cpe:/a:mysql:mysql:3.23.42"/>
    <category term="cpe:/a:mysql:mysql:3.23.43"/>
    <category term="cpe:/a:mysql:mysql:3.23.44"/>
    <category term="cpe:/a:mysql:mysql:3.23.45"/>
    <category term="cpe:/a:mysql:mysql:3.23.46"/>
    <category term="cpe:/a:mysql:mysql:3.23.47"/>
    <category term="cpe:/a:mysql:mysql:3.23.48"/>
    <category term="cpe:/a:mysql:mysql:3.23.49"/>
    <category term="cpe:/a:mysql:mysql:3.23.5"/>
    <category term="cpe:/a:mysql:mysql:3.23.50"/>
    <category term="cpe:/a:mysql:mysql:3.23.51"/>
    <category term="cpe:/a:mysql:mysql:3.23.52"/>
    <category term="cpe:/a:mysql:mysql:3.23.53"/>
    <category term="cpe:/a:mysql:mysql:3.23.53a"/>
    <category term="cpe:/a:mysql:mysql:3.23.54"/>
    <category term="cpe:/a:mysql:mysql:3.23.54a"/>
    <category term="cpe:/a:mysql:mysql:3.23.55"/>
    <category term="cpe:/a:mysql:mysql:3.23.56"/>
    <category term="cpe:/a:mysql:mysql:3.23.57"/>
    <category term="cpe:/a:mysql:mysql:3.23.58"/>
    <category term="cpe:/a:mysql:mysql:3.23.59"/>
    <category term="cpe:/a:mysql:mysql:3.23.6"/>
    <category term="cpe:/a:mysql:mysql:3.23.7"/>
    <category term="cpe:/a:mysql:mysql:3.23.8"/>
    <category term="cpe:/a:mysql:mysql:3.23.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.0.1"/>
    <category term="cpe:/a:mysql:mysql:4.0.10"/>
    <category term="cpe:/a:mysql:mysql:4.0.11"/>
    <category term="cpe:/a:mysql:mysql:4.0.11:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.12"/>
    <category term="cpe:/a:mysql:mysql:4.0.13"/>
    <category term="cpe:/a:mysql:mysql:4.0.14"/>
    <category term="cpe:/a:mysql:mysql:4.0.15"/>
    <category term="cpe:/a:mysql:mysql:4.0.16"/>
    <category term="cpe:/a:mysql:mysql:4.0.17"/>
    <category term="cpe:/a:mysql:mysql:4.0.18"/>
    <category term="cpe:/a:mysql:mysql:4.0.19"/>
    <category term="cpe:/a:mysql:mysql:4.0.2"/>
    <category term="cpe:/a:mysql:mysql:4.0.20"/>
    <category term="cpe:/a:mysql:mysql:4.0.21"/>
    <category term="cpe:/a:mysql:mysql:4.0.23"/>
    <category term="cpe:/a:mysql:mysql:4.0.24"/>
    <category term="cpe:/a:mysql:mysql:4.0.25"/>
    <category term="cpe:/a:mysql:mysql:4.0.26"/>
    <category term="cpe:/a:mysql:mysql:4.0.27"/>
    <category term="cpe:/a:mysql:mysql:4.0.3"/>
    <category term="cpe:/a:mysql:mysql:4.0.4"/>
    <category term="cpe:/a:mysql:mysql:4.0.5"/>
    <category term="cpe:/a:mysql:mysql:4.0.5a"/>
    <category term="cpe:/a:mysql:mysql:4.0.6"/>
    <category term="cpe:/a:mysql:mysql:4.0.7"/>
    <category term="cpe:/a:mysql:mysql:4.0.7:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.8"/>
    <category term="cpe:/a:mysql:mysql:4.0.8:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.0.9"/>
    <category term="cpe:/a:mysql:mysql:4.0.9:gamma"/>
    <category term="cpe:/a:mysql:mysql:4.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0.0"/>
    <category term="cpe:/a:mysql:mysql:4.1.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.1"/>
    <category term="cpe:/a:mysql:mysql:4.1.10"/>
    <category term="cpe:/a:mysql:mysql:4.1.10a"/>
    <category term="cpe:/a:mysql:mysql:4.1.11"/>
    <category term="cpe:/a:mysql:mysql:4.1.12"/>
    <category term="cpe:/a:mysql:mysql:4.1.12a"/>
    <category term="cpe:/a:mysql:mysql:4.1.13"/>
    <category term="cpe:/a:mysql:mysql:4.1.13a"/>
    <category term="cpe:/a:mysql:mysql:4.1.14"/>
    <category term="cpe:/a:mysql:mysql:4.1.14a"/>
    <category term="cpe:/a:mysql:mysql:4.1.15"/>
    <category term="cpe:/a:mysql:mysql:4.1.15a"/>
    <category term="cpe:/a:mysql:mysql:4.1.16"/>
    <category term="cpe:/a:mysql:mysql:4.1.17"/>
    <category term="cpe:/a:mysql:mysql:4.1.18"/>
    <category term="cpe:/a:mysql:mysql:4.1.19"/>
    <category term="cpe:/a:mysql:mysql:4.1.2"/>
    <category term="cpe:/a:mysql:mysql:4.1.20"/>
    <category term="cpe:/a:mysql:mysql:4.1.21"/>
    <category term="cpe:/a:mysql:mysql:4.1.22"/>
    <category term="cpe:/a:mysql:mysql:4.1.2:alpha"/>
    <category term="cpe:/a:mysql:mysql:4.1.3"/>
    <category term="cpe:/a:mysql:mysql:4.1.3:beta"/>
    <category term="cpe:/a:mysql:mysql:4.1.4"/>
    <category term="cpe:/a:mysql:mysql:4.1.5"/>
    <category term="cpe:/a:mysql:mysql:4.1.6"/>
    <category term="cpe:/a:mysql:mysql:4.1.7"/>
    <category term="cpe:/a:mysql:mysql:4.1.8"/>
    <category term="cpe:/a:mysql:mysql:4.1.8a"/>
    <category term="cpe:/a:mysql:mysql:4.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0.0"/>
    <category term="cpe:/a:mysql:mysql:5.0.0:alpha"/>
    <category term="cpe:/a:mysql:mysql:5.0.1"/>
    <category term="cpe:/a:mysql:mysql:5.0.10"/>
    <category term="cpe:/a:mysql:mysql:5.0.10a"/>
    <category term="cpe:/a:mysql:mysql:5.0.11"/>
    <category term="cpe:/a:mysql:mysql:5.0.12"/>
    <category term="cpe:/a:mysql:mysql:5.0.13"/>
    <category term="cpe:/a:mysql:mysql:5.0.14"/>
    <category term="cpe:/a:mysql:mysql:5.0.15"/>
    <category term="cpe:/a:mysql:mysql:5.0.15a"/>
    <category term="cpe:/a:mysql:mysql:5.0.16"/>
    <category term="cpe:/a:mysql:mysql:5.0.16a"/>
    <category term="cpe:/a:mysql:mysql:5.0.17"/>
    <category term="cpe:/a:mysql:mysql:5.0.17a"/>
    <category term="cpe:/a:mysql:mysql:5.0.18"/>
    <category term="cpe:/a:mysql:mysql:5.0.19"/>
    <category term="cpe:/a:mysql:mysql:5.0.1a"/>
    <category term="cpe:/a:mysql:mysql:5.0.2"/>
    <category term="cpe:/a:mysql:mysql:5.0.20"/>
    <category term="cpe:/a:mysql:mysql:5.0.20a"/>
    <category term="cpe:/a:mysql:mysql:5.0.21"/>
    <category term="cpe:/a:mysql:mysql:5.0.22"/>
    <category term="cpe:/a:mysql:mysql:5.0.24"/>
    <category term="cpe:/a:mysql:mysql:5.0.27"/>
    <category term="cpe:/a:mysql:mysql:5.0.3"/>
    <category term="cpe:/a:mysql:mysql:5.0.33"/>
    <category term="cpe:/a:mysql:mysql:5.0.37"/>
    <category term="cpe:/a:mysql:mysql:5.0.3:beta"/>
    <category term="cpe:/a:mysql:mysql:5.0.3a"/>
    <category term="cpe:/a:mysql:mysql:5.0.4"/>
    <category term="cpe:/a:mysql:mysql:5.0.41"/>
    <category term="cpe:/a:mysql:mysql:5.0.4a"/>
    <category term="cpe:/a:mysql:mysql:5.0.5"/>
    <category term="cpe:/a:mysql:mysql:5.0.6"/>
    <category term="cpe:/a:mysql:mysql:5.0.7"/>
    <category term="cpe:/a:mysql:mysql:5.0.8"/>
    <category term="cpe:/a:mysql:mysql:5.0.81"/>
    <category term="cpe:/a:mysql:mysql:5.0.9"/>
    <category term="cpe:/a:mysql:mysql:5.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.1"/>
    <category term="cpe:/a:mysql:mysql:5.1.10"/>
    <category term="cpe:/a:mysql:mysql:5.1.11"/>
    <category term="cpe:/a:mysql:mysql:5.1.12"/>
    <category term="cpe:/a:mysql:mysql:5.1.13"/>
    <category term="cpe:/a:mysql:mysql:5.1.14"/>
    <category term="cpe:/a:mysql:mysql:5.1.15"/>
    <category term="cpe:/a:mysql:mysql:5.1.16"/>
    <category term="cpe:/a:mysql:mysql:5.1.17"/>
    <category term="cpe:/a:mysql:mysql:5.1.18"/>
    <category term="cpe:/a:mysql:mysql:5.1.19"/>
    <category term="cpe:/a:mysql:mysql:5.1.2"/>
    <category term="cpe:/a:mysql:mysql:5.1.20"/>
    <category term="cpe:/a:mysql:mysql:5.1.21"/>
    <category term="cpe:/a:mysql:mysql:5.1.22"/>
    <category term="cpe:/a:mysql:mysql:5.1.23"/>
    <category term="cpe:/a:mysql:mysql:5.1.23:a"/>
    <category term="cpe:/a:mysql:mysql:5.1.23_bk"/>
    <category term="cpe:/a:mysql:mysql:5.1.23a"/>
    <category term="cpe:/a:mysql:mysql:5.1.24"/>
    <category term="cpe:/a:mysql:mysql:5.1.25"/>
    <category term="cpe:/a:mysql:mysql:5.1.26"/>
    <category term="cpe:/a:mysql:mysql:5.1.27"/>
    <category term="cpe:/a:mysql:mysql:5.1.28"/>
    <category term="cpe:/a:mysql:mysql:5.1.29"/>
    <category term="cpe:/a:mysql:mysql:5.1.3"/>
    <category term="cpe:/a:mysql:mysql:5.1.30"/>
    <category term="cpe:/a:mysql:mysql:5.1.31"/>
    <category term="cpe:/a:mysql:mysql:5.1.31:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.32"/>
    <category term="cpe:/a:mysql:mysql:5.1.32-bzr"/>
    <category term="cpe:/a:mysql:mysql:5.1.33"/>
    <category term="cpe:/a:mysql:mysql:5.1.34"/>
    <category term="cpe:/a:mysql:mysql:5.1.34:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.35"/>
    <category term="cpe:/a:mysql:mysql:5.1.36"/>
    <category term="cpe:/a:mysql:mysql:5.1.37"/>
    <category term="cpe:/a:mysql:mysql:5.1.37:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.38"/>
    <category term="cpe:/a:mysql:mysql:5.1.39"/>
    <category term="cpe:/a:mysql:mysql:5.1.4"/>
    <category term="cpe:/a:mysql:mysql:5.1.40"/>
    <category term="cpe:/a:mysql:mysql:5.1.40:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.41"/>
    <category term="cpe:/a:mysql:mysql:5.1.42"/>
    <category term="cpe:/a:mysql:mysql:5.1.43"/>
    <category term="cpe:/a:mysql:mysql:5.1.43:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.44"/>
    <category term="cpe:/a:mysql:mysql:5.1.45"/>
    <category term="cpe:/a:mysql:mysql:5.1.46"/>
    <category term="cpe:/a:mysql:mysql:5.1.46:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.47"/>
    <category term="cpe:/a:mysql:mysql:5.1.48"/>
    <category term="cpe:/a:mysql:mysql:5.1.49"/>
    <category term="cpe:/a:mysql:mysql:5.1.49:sp1"/>
    <category term="cpe:/a:mysql:mysql:5.1.5"/>
    <category term="cpe:/a:mysql:mysql:5.1.50"/>
    <category term="cpe:/a:mysql:mysql:5.1.5a"/>
    <category term="cpe:/a:mysql:mysql:5.1.6"/>
    <category term="cpe:/a:mysql:mysql:5.1.7"/>
    <category term="cpe:/a:mysql:mysql:5.1.8"/>
    <category term="cpe:/a:mysql:mysql:5.1.9"/>
    <category term="cpe:/a:mysql:mysql:5.5.0"/>
    <category term="cpe:/a:mysql:mysql:5.5.1"/>
    <category term="cpe:/a:mysql:mysql:5.5.2"/>
    <category term="cpe:/a:mysql:mysql:5.5.3"/>
    <category term="cpe:/a:mysql:mysql:5.5.4"/>
    <category term="cpe:/a:mysql:mysql:5.5.5"/>
    <category term="cpe:/a:mysql:mysql:5.5.6"/>
    <category term="cpe:/a:mysql:mysql:5.5.7"/>
    <category term="cpe:/a:mysql:mysql:5.5.8"/>
    <category term="cpe:/a:mysql:mysql:5.5.9"/>
    <category term="cpe:/a:oracle:mysql:5.1.51"/>
    <category term="cpe:/a:oracle:mysql:5.1.52"/>
    <category term="cpe:/a:oracle:mysql:5.1.52:sp1"/>
    <category term="cpe:/a:oracle:mysql:5.1.53"/>
    <category term="cpe:/a:oracle:mysql:5.1.54"/>
    <category term="cpe:/a:oracle:mysql:5.1.55"/>
    <category term="cpe:/a:oracle:mysql:5.1.56"/>
    <category term="cpe:/a:oracle:mysql:5.1.57"/>
    <category term="cpe:/a:oracle:mysql:5.1.58"/>
    <category term="cpe:/a:oracle:mysql:5.1.59"/>
    <category term="cpe:/a:oracle:mysql:5.1.60"/>
    <category term="cpe:/a:oracle:mysql:5.1.61"/>
    <category term="cpe:/a:oracle:mysql:5.1.62"/>
    <category term="cpe:/a:oracle:mysql:5.1.63"/>
    <category term="cpe:/a:oracle:mysql:5.1.65"/>
    <category term="cpe:/a:oracle:mysql:5.5.10"/>
    <category term="cpe:/a:oracle:mysql:5.5.11"/>
    <category term="cpe:/a:oracle:mysql:5.5.12"/>
    <category term="cpe:/a:oracle:mysql:5.5.13"/>
    <category term="cpe:/a:oracle:mysql:5.5.14"/>
    <category term="cpe:/a:oracle:mysql:5.5.15"/>
    <category term="cpe:/a:oracle:mysql:5.5.16"/>
    <category term="cpe:/a:oracle:mysql:5.5.17"/>
    <category term="cpe:/a:oracle:mysql:5.5.18"/>
    <category term="cpe:/a:oracle:mysql:5.5.19"/>
    <category term="cpe:/a:oracle:mysql:5.5.20"/>
    <category term="cpe:/a:oracle:mysql:5.5.21"/>
    <category term="cpe:/a:oracle:mysql:5.5.22"/>
    <category term="cpe:/a:oracle:mysql:5.5.23"/>
    <category term="cpe:/a:oracle:mysql:5.5.24"/>
    <category term="cpe:/a:oracle:mysql:5.5.25"/>
    <category term="cpe:/a:oracle:mysql:5.5.25:a"/>
    <category term="cpe:/a:oracle:mysql:5.5.26 and previous versions"/>
    <sec:identifier>CVE-2012-3144</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3142:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Di...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3142_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3142_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3142_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.5, 5.1.0, 5.2.0, and 5.3.0 through 5.3.4 allows remote authenticated users to affect confidentiality, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3142_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:5.0.5"/>
    <category term="cpe:/a:oracle:financial_services_software:5.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:5.3.4"/>
    <sec:identifier>CVE-2012-3142</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3141:financial_services_software: Unspecified vulnerability in the Oracle FLEXCUBE Un...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3141_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3141_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3141_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.0, 10.0.2, 10.1.0, 10.2.0, 10.2.2, 10.3.0, 10.5.0, and 11.0.0 through 11.2.0 allows remote authenticated users to affect integrity, related to BASE.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3141_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:financial_services_software:10.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.0.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.1.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.2.2"/>
    <category term="cpe:/a:oracle:financial_services_software:10.3.0"/>
    <category term="cpe:/a:oracle:financial_services_software:10.5.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.0.0"/>
    <category term="cpe:/a:oracle:financial_services_software:11.2.0"/>
    <sec:identifier>CVE-2012-3141</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3140:supply_chain_products_suite: Unspecified vulnerability in the Oracle Agile PLM F...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3140_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3140_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3140_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Agile PLM For Process component in Oracle Supply Chain Products Suite 6.0.0.6.3 and 6.1.0.1.14 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Supply Chain Relationship Management.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3140_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.0.0.6.3"/>
    <category term="cpe:/a:oracle:supply_chain_products_suite:6.1.0.1.14"/>
    <sec:identifier>CVE-2012-3140</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3138:e-business_suite: Unspecified vulnerability in the Oracle iStore comp...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3138_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3138_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3138_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect integrity via unknown vectors related to Web interface.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3138_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:e-business_suite:11.5.10.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.0.6"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.1"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.2"/>
    <category term="cpe:/a:oracle:e-business_suite:12.1.3"/>
    <sec:identifier>CVE-2012-3138</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1763:industry_applications: Unspecified vulnerability in the Oracle Clinical/Re...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1763_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1763_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1763_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Clinical/Remote Data Capture component in Oracle Industry Applications 4.6.0 and 4.6.2 allows remote authenticated users to affect confidentiality, related to HTML Surround.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1763_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:industry_applications:4.6.0"/>
    <category term="cpe:/a:oracle:industry_applications:4.6.2"/>
    <sec:identifier>CVE-2012-1763</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1751:database_server: Unspecified vulnerability in the Core RDBMS compone...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1751_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1751_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1751_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to flashback archive.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1751_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:database_server:11.1.0.7"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.2"/>
    <category term="cpe:/a:oracle:database_server:11.2.0.3"/>
    <sec:identifier>CVE-2012-1751</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1686:fusion_middleware: Unspecified vulnerability in the Oracle Business In...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1686_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1686_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1686_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 11.1.1.6 and other versions allows remote attackers to affect integrity via unknown vectors related to Installation.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1686_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:11.1.1.6.0"/>
    <sec:identifier>CVE-2012-1686</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-1685:virtualization: Unspecified vulnerability in the Secure Global Desk...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1685_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1685_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1685_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 allows remote attackers to affect integrity via unknown vectors related to Core.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-1685_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:virtualization:4.6"/>
    <sec:identifier>CVE-2012-1685</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0518:fusion_middleware: Unspecified vulnerability in the Oracle Application...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0518_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0518_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0518_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Application Server Single Sign-On component in Oracle Fusion Middleware 10.1.4.3.0 allows remote attackers to affect integrity via unknown vectors related to Redirects.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0518_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.4.3.0"/>
    <sec:identifier>CVE-2012-0518</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0108:fusion_middleware: Unspecified vulnerability in the Oracle Imaging and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0108_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0108_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0108_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Web.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0108_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.6.0"/>
    <sec:identifier>CVE-2012-0108</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0107:fusion_middleware: Unspecified vulnerability in the Oracle Imaging and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0107_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0107_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0107_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote attackers to affect availability via unknown vectors related to Web.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0107_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.6.0"/>
    <sec:identifier>CVE-2012-0107</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0106:fusion_middleware: Unspecified vulnerability in the Oracle Imaging and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0106_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0106_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0106_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Web.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0106_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.6.0"/>
    <sec:identifier>CVE-2012-0106</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0095:fusion_middleware: Unspecified vulnerability in the Oracle Imaging and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0095_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0095_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0095_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Web.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0095_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.6.0"/>
    <sec:identifier>CVE-2012-0095</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0093:fusion_middleware: Unspecified vulnerability in the Oracle Imaging and...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0093_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0093_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0093_AD_1.html</id>
    <published>2012-10-16T00:00:00+09:00</published>
    <updated>2012-10-17T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote attackers to affect integrity via unknown vectors related to Web.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0093_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:oracle:fusion_middleware:10.1.3.6.0"/>
    <sec:identifier>CVE-2012-0093</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004938:ComponentOne FlexGrid &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004938_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004938_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004938_AD_1.html</id>
    <published>2012-10-16T17:21:17+09:00</published>
    <updated>2012-10-16T17:21:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Open Automation Software OPC Systems.NET で使用される Systems.NET ComponentOne FlexGrid の VSFlex7.VSFlexGrid ActiveX コントロールには、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004938_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:componentone:flexgrid"/>
    <category term="cpe:/a:opcsystems:opcsystems.net"/>
    <sec:identifier>JVNDB-2012-004938</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004937:&#35079;&#25968;&#12398;&#12493;&#12483;&#12488;&#12527;&#12540;&#12463;&#12459;&#12513;&#12521;&#12395;&#35469;&#35388;&#22238;&#36991;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004937_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004937_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004937_AD_1.html</id>
    <published>2012-10-16T11:33:29+09:00</published>
    <updated>2012-10-16T11:33:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数のネットワークカメラのウェブインターフェースには、認証回避の脆弱性が存在します。  Foscam や Wansview を含む複数企業が提供するネットワークカメラのウェブインターフェースには、認証回避の脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004937_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:misc:shenzhen_foscam_intelligent_technology_h264_ip_camera"/>
    <category term="cpe:/h:misc:wansview_wansview_wireless_ip_cameras"/>
    <sec:identifier>JVNDB-2012-004937</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004936:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#21516;&#19968;&#29983;&#25104;&#20803;&#12509;&#12522;&#12471;&#12540;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004936_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004936_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004936_AD_1.html</id>
    <published>2012-10-15T15:55:20+09:00</published>
    <updated>2012-10-15T15:55:20+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、セキュリティラッパーが解かれる際に、defaultValue 関数におけるセキュリティチェックが省略されるため、同一生成元ポリシー (Same Origin Policy) を回避される、および Location オブジェクトのプロパティを読まれる、または任意の JavaScript コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004936_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004936</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004935:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#21516;&#19968;&#29983;&#25104;&#20803;&#12509;&#12522;&#12471;&#12540;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004935_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004935_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004935_AD_1.html</id>
    <published>2012-10-15T15:54:37+09:00</published>
    <updated>2012-10-15T15:54:37+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、同一生成元ポリシー (Same Origin Policy) を回避される、および Location オブジェクトのプロパティを読まれる脆弱性が存在します。  本問題は、CVE-2012-4193 と関連する問題です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004935_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004935</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004934:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; WebSocket &#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004934_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004934_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004934_AD_1.html</id>
    <published>2012-10-15T15:53:31+09:00</published>
    <updated>2012-10-15T15:53:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の WebSocket の実装の mozilla::net::FailDelayManager::Lookup 関数には、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004934_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004934</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004933:CyanogenMod &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Mozilla Firefox Android &#12499;&#12523;&#12489;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004933_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004933_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004933_AD_1.html</id>
    <published>2012-10-15T15:52:44+09:00</published>
    <updated>2012-10-15T15:52:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CyanogenMod 上で稼働する Mozilla Firefox Android ビルドの FreeType 内の FT2FontEntry::CreateFontEntry 関数には、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004933_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/o:cyanogenmod:cyanogenmod"/>
    <sec:identifier>JVNDB-2012-004933</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004932:phpPaleo &#12398; index.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004932_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004932_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004932_AD_1.html</id>
    <published>2012-10-15T15:48:34+09:00</published>
    <updated>2012-10-15T15:48:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpPaleo の index.php には、ディレクトリトラバーサルの脆弱性が存在します。  本脆弱性は、CVE-2012-1671 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004932_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nicolas_tormo:phppaleo"/>
    <sec:identifier>JVNDB-2012-004932</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004931:Craig Knudsen WebCalendar &#12395;&#12362;&#12369;&#12427; settings.php &#12434;&#22793;&#26356;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004931_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004931_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004931_AD_1.html</id>
    <published>2012-10-15T15:46:52+09:00</published>
    <updated>2012-10-15T15:46:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Craig Knudsen WebCalendar の install/index.php には、&quot;user theme preference&quot; に関する処理に不備があるため、settings.php を変更される、および任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004931_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:k5n:webcalendar"/>
    <sec:identifier>JVNDB-2012-004931</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004930:Craig Knudsen WebCalendar &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004930_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004930_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004930_AD_1.html</id>
    <published>2012-10-15T15:44:53+09:00</published>
    <updated>2012-10-15T15:44:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Craig Knudsen WebCalendar には、クロスサイトスクリプティングの脆弱性が存在します。  本脆弱性は、CVE-2012-0846 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004930_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:k5n:webcalendar"/>
    <sec:identifier>JVNDB-2012-004930</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004929:html2ps &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004929_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004929_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004929_AD_1.html</id>
    <published>2012-10-15T15:41:15+09:00</published>
    <updated>2012-10-15T15:41:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
html2ps には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004929_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:html2ps_project:html2ps"/>
    <sec:identifier>JVNDB-2012-004929</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004928:ActiveTcl &#12398;&#12452;&#12531;&#12473;&#12488;&#12524;&#12540;&#12471;&#12519;&#12531;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004928_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004928_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004928_AD_1.html</id>
    <published>2012-10-15T15:06:34+09:00</published>
    <updated>2012-10-15T15:06:34+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ActiveTcl のインストレーション機能には、検索パスに関する処理に不備があるため、C:\ ディレクトリのトップレベルにインストールを行う際、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004928_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:activestate:activetcl"/>
    <sec:identifier>JVNDB-2012-004928</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004927:ActivePerl &#12398;&#12452;&#12531;&#12473;&#12488;&#12524;&#12540;&#12471;&#12519;&#12531;&#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004927_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004927_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004927_AD_1.html</id>
    <published>2012-10-15T15:03:48+09:00</published>
    <updated>2012-10-15T15:03:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ActivePerl のインストレーション機能には、検索パスに関する処理に不備があるため、C:\ ディレクトリのトップレベルにインストールを行う際、権限を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004927_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:activestate:activeperl"/>
    <sec:identifier>JVNDB-2012-004927</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004926:Ubuntu Software Properties &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12497;&#12483;&#12465;&#12540;&#12472;&#12522;&#12509;&#12472;&#12488;&#12522; GPG &#12461;&#12540;&#12434;&#12452;&#12531;&#12473;&#12488;&#12540;&#12523;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004926_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004926_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004926_AD_1.html</id>
    <published>2012-10-15T15:00:59+09:00</published>
    <updated>2012-10-15T15:00:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Ubuntu Software Properties の apt-add-repository ツールは、鍵サーバからインポートされた PPA GPG キーを適切にチェックしないため、任意のパッケージリポジトリ GPG キーをインストールされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004926_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:canonical:ubuntu_software_properties"/>
    <sec:identifier>JVNDB-2012-004926</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004925:hostapd &#12398; EAP authentication server &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004925_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004925_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004925_AD_1.html</id>
    <published>2012-10-15T14:57:48+09:00</published>
    <updated>2012-10-15T14:57:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
hostapd の EAP authentication server の eap_server_tls_common.c 内の eap_server_tls_process_fragment 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004925_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:w1.fi:hostapd"/>
    <sec:identifier>JVNDB-2012-004925</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004924:Bacula &#12398; dird/dird_conf.c &#12395;&#12362;&#12369;&#12427;&#12522;&#12477;&#12540;&#12473;&#12398;&#12480;&#12531;&#12503;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004924_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004924_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004924_AD_1.html</id>
    <published>2012-10-15T14:56:02+09:00</published>
    <updated>2012-10-15T14:56:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bacula の dird/dird_conf.c 内の dump_resource 関数は、ACL ルールを適切に適用しないため、リソースのダンプ情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004924_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bacula:bacula_backup"/>
    <sec:identifier>JVNDB-2012-004924</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004923:crypto-utils &#12398; genkey.pl &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12365;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004923_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004923_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004923_AD_1.html</id>
    <published>2012-10-15T14:54:15+09:00</published>
    <updated>2012-10-15T14:54:15+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
crypto-utils の genkey.pl 内の nssconfigFound 関数には、任意のファイルを上書きされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004923_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:fedoraproject:crypto-utils"/>
    <sec:identifier>JVNDB-2012-004923</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004922:Siemens SIMATIC S7-1200 PLC &#19978;&#12398; Web &#12469;&#12540;&#12496;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004922_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004922_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004922_AD_1.html</id>
    <published>2012-10-15T14:34:44+09:00</published>
    <updated>2012-10-15T14:34:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Siemens SIMATIC S7-1200 PLC 上で稼働する Web サーバには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004922_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc"/>
    <sec:identifier>JVNDB-2012-004922</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004921:xdiagnose &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#19978;&#26360;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004921_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004921_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004921_AD_1.html</id>
    <published>2012-10-15T14:29:31+09:00</published>
    <updated>2012-10-15T14:29:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
xdiagnose の welcome.py には、任意のファイルを上書される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004921_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bryce_harrington:xdiagnose"/>
    <sec:identifier>JVNDB-2012-004921</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004920:WellinTech KingView &#12395;&#12362;&#12369;&#12427;&#35388;&#26126;&#26360;&#24773;&#22577;&#12434;&#30330;&#35211;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004920_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004920_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004920_AD_1.html</id>
    <published>2012-10-15T14:24:51+09:00</published>
    <updated>2012-10-15T14:24:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WellinTech KingView は、脆弱なパスワードハッシュアルゴリズムを使用するため、証明書情報を発見される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004920_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wellintek:kingview"/>
    <sec:identifier>JVNDB-2012-004920</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004919:Google Chrome &#12398;&#12503;&#12525;&#12475;&#12473;&#38291;&#36890;&#20449;&#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#12469;&#12531;&#12489;&#12508;&#12483;&#12463;&#12473;&#12398;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004919_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004919_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004919_AD_1.html</id>
    <published>2012-10-15T14:24:17+09:00</published>
    <updated>2012-10-15T14:24:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome のプロセス間通信 (IPC) の実装には、サンドボックスの制限を回避され、任意のファイルに書き込まれる脆弱性が存在します。  本脆弱性は、CVE-2012-5112 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004919_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004919</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004918:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; WebKit &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004918_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004918_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004918_AD_1.html</id>
    <published>2012-10-15T14:23:56+09:00</published>
    <updated>2012-10-15T14:23:56+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される WebKit の SVG 実装には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004918_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004918</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004917:cgit &#12398; parsing.c &#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004917_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004917_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004917_AD_1.html</id>
    <published>2012-10-15T14:13:38+09:00</published>
    <updated>2012-10-15T14:13:38+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
cgit の parsing.c 内の substr 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004917_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lars_hjemli:cgit"/>
    <sec:identifier>JVNDB-2012-004917</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004916:Midnight Commander (mc) &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004916_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004916_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004916_AD_1.html</id>
    <published>2012-10-15T14:08:12+09:00</published>
    <updated>2012-10-15T14:08:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Midnight Commander (mc) は、複数のファイルが選択されている際、(1) MC_EXT_SELECTED または (2) MC_EXT_ONLYTAGGED の環境変数を適切に処理しないため、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004916_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:midnight_commander:midnight_commander"/>
    <sec:identifier>JVNDB-2012-004916</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004915:Linux Kernel &#12398; net/socket.c &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004915_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004915_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004915_AD_1.html</id>
    <published>2012-10-15T14:02:44+09:00</published>
    <updated>2012-10-15T14:02:44+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Linux Kernel の net/socket.c 内の (1) do_siocgstamp および (2) do_siocgstampns 関数は、不正な引数順序を使用するため、カーネルメモリから重要な情報を取得される、またはサービス運用妨害 (システムクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004915_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel"/>
    <sec:identifier>JVNDB-2012-004915</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004914:EMC RSA Adaptive Authentication On-Premise &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004914_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004914_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004914_AD_1.html</id>
    <published>2012-10-15T14:01:10+09:00</published>
    <updated>2012-10-15T14:01:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
EMC RSA Adaptive Authentication On-Premise (AAOP) には、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004914_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise"/>
    <sec:identifier>JVNDB-2012-004914</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004913:openCryptoki &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12395;&#35504;&#12391;&#12418;&#26360;&#12365;&#36796;&#12415;&#12391;&#12365;&#12427;&#27177;&#38480; (world-writable permissions) &#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004913_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004913_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004913_AD_1.html</id>
    <published>2012-10-15T13:55:28+09:00</published>
    <updated>2012-10-15T13:55:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
openCryptoki には、任意のファイルに誰でも書き込みできる権限 (world-writable permissions) を作成される、または設定される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004913_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opencryptoki_project:opencryptoki"/>
    <sec:identifier>JVNDB-2012-004913</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004912:openCryptoki &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12395;&#35504;&#12391;&#12418;&#26360;&#12365;&#36796;&#12415;&#12391;&#12365;&#12427;&#27177;&#38480; (world-writable permissions) &#12434;&#20316;&#25104;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004912_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004912_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004912_AD_1.html</id>
    <published>2012-10-15T13:51:50+09:00</published>
    <updated>2012-10-15T13:51:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
openCryptoki は、スピンロックを使用する際、任意のファイルに誰でも書き込みできる権限 (world-writable permissions) を作成される、または設定される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004912_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opencryptoki_project:opencryptoki"/>
    <sec:identifier>JVNDB-2012-004912</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004911:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004911_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004911_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004911_AD_1.html</id>
    <published>2012-10-15T11:41:01+09:00</published>
    <updated>2012-10-15T11:41:01+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004911_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004911</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004910:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004910_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004910_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004910_AD_1.html</id>
    <published>2012-10-15T11:37:05+09:00</published>
    <updated>2012-10-15T11:37:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、JavaScript オブジェク上で instanceof オペレータを使用している間、不特定の変数のキャストを適切に実行しないため、任意のコードを実行される、またはサービス運用妨害 (表明違反) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004910_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004910</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004909:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; IME State Manager &#12398;&#23455;&#35013;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004909_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004909_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004909_AD_1.html</id>
    <published>2012-10-15T11:33:23+09:00</published>
    <updated>2012-10-15T11:33:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の IME State Manager の実装には、nsIContent::GetNameSpaceID 関数に関する処理に不備があるため、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004909_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004909</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004908:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#21516;&#19968;&#29983;&#25104;&#20803;&#12509;&#12522;&#12471;&#12540;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004908_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004908_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004908_AD_1.html</id>
    <published>2012-10-15T11:31:28+09:00</published>
    <updated>2012-10-15T11:31:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、GetProperty 関数に対する JSAPI のアクセスを適切に制限しないため、同一生成元ポリシー (Same Origin Policy) を回避される、および不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004908_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004908</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004907:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004907_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004907_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004907_AD_1.html</id>
    <published>2012-10-15T11:29:10+09:00</published>
    <updated>2012-10-15T11:29:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、履歴データを適切に管理しないため、クロスサイトスクリプティング攻撃を実行される、または重要な POST コンテンツを取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004907_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004907</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004906:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; JavaScript &#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004906_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004906_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004906_AD_1.html</id>
    <published>2012-10-15T11:25:16+09:00</published>
    <updated>2012-10-15T11:25:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の Chrome Object Wrapper (COW) の実装は、InstallTrigger メソッドの失敗を適切に対話処理しないため、Chrome 権限を持つ任意の JavaScript コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004906_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004906</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004905:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004905_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004905_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004905_AD_1.html</id>
    <published>2012-10-15T11:19:33+09:00</published>
    <updated>2012-10-15T11:19:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、クロスサイトスクリプティング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004905_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004905</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004904:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398; IsCSSWordSpacingSpace &#38306;&#25968;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004904_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004904_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004904_AD_1.html</id>
    <published>2012-10-15T11:15:29+09:00</published>
    <updated>2012-10-15T11:15:29+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の IsCSSWordSpacingSpace 関数には、任意のコードを実行される、またはサービス運用妨害 (out-of-bounds read) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004904_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004904</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004903:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004903_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004903_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004903_AD_1.html</id>
    <published>2012-10-15T11:13:47+09:00</published>
    <updated>2012-10-15T11:13:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsHTMLCSSUtils::CreateCSSPropertyTxn 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004903_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004903</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004902:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004902_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004902_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004902_AD_1.html</id>
    <published>2012-10-15T11:11:41+09:00</published>
    <updated>2012-10-15T11:11:41+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsHTMLEditor::IsPrevCharInNodeWhitespace 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004902_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004902</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004901:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004901_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004901_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004901_AD_1.html</id>
    <published>2012-10-15T11:09:22+09:00</published>
    <updated>2012-10-15T11:09:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsSMILAnimationController::DoSample 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004901_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004901</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004900:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004900_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004900_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004900_AD_1.html</id>
    <published>2012-10-15T11:06:31+09:00</published>
    <updated>2012-10-15T11:06:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsTextEditRules::WillInsert 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004900_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004900</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004899:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004899_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004899_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004899_AD_1.html</id>
    <published>2012-10-15T11:03:02+09:00</published>
    <updated>2012-10-15T11:03:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の DOMSVGTests::GetRequiredFeatures 関数には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリ破損) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004899_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004899</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004898:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004898_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004898_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004898_AD_1.html</id>
    <published>2012-10-15T10:59:23+09:00</published>
    <updated>2012-10-15T10:59:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の Chrome Object Wrapper (COW) の実装は、標準クラス用のプロトタイプのプロパティへのアクセスを制限しないため、Chrome 権限を持つ任意の JavaScript コードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004898_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004898</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004897:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004897_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004897_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004897_AD_1.html</id>
    <published>2012-10-15T10:56:19+09:00</published>
    <updated>2012-10-15T10:56:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsCharTraits::length 関数には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004897_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004897</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004896:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004896_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004896_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004896_AD_1.html</id>
    <published>2012-10-15T10:53:47+09:00</published>
    <updated>2012-10-15T10:53:47+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の nsWaveReader::DecodeAudioData 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004896_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004896</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004895:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004895_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004895_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004895_AD_1.html</id>
    <published>2012-10-15T10:50:33+09:00</published>
    <updated>2012-10-15T10:50:33+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品には、特定の insPos 変数を適切に管理しないため、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損および表明違反) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004895_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004895</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004894:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12498;&#12540;&#12503;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004894_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004894_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004894_AD_1.html</id>
    <published>2012-10-15T10:46:40+09:00</published>
    <updated>2012-10-15T10:46:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品の Convolve3x3 関数には、ヒープベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004894_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004894</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004893:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12522;&#12483;&#12463;&#12472;&#12515;&#12483;&#12461;&#12531;&#12464;&#25915;&#25731;&#12434;&#35480;&#30330;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004893_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004893_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004893_AD_1.html</id>
    <published>2012-10-15T10:44:48+09:00</published>
    <updated>2012-10-15T10:44:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、SELECT 要素の複数のメニューを持つ Web ページから離れるナビゲーションを適切に処理しないため、クリックジャッキング攻撃を誘発される脆弱性が存在します。  本脆弱性は、CVE-2012-3984 とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004893_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004893</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004892:Android &#19978;&#12391;&#31292;&#20685;&#12377;&#12427; Mozilla Firefox &#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004892_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004892_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004892_AD_1.html</id>
    <published>2012-10-15T10:28:03+09:00</published>
    <updated>2012-10-15T10:28:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Android 上で稼働する Mozilla Firefox は、Reader Mode ページへ Chrome 権限を割り当てるため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004892_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <sec:identifier>JVNDB-2012-004892</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004891:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12450;&#12463;&#12475;&#12473;&#21046;&#38480;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004891_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004891_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004891_AD_1.html</id>
    <published>2012-10-15T10:25:18+09:00</published>
    <updated>2012-10-15T10:25:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、DOMWindowUtils メソッドの呼び出しを適切に制限しないため、アクセス制限を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004891_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004891</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004890:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004890_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004890_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004890_AD_1.html</id>
    <published>2012-10-15T10:23:16+09:00</published>
    <updated>2012-10-15T10:23:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、HTML5 の同一生成元ポリシー (Same Origin Policy) を適切に実装しないため、クロスサイトスクリプティング攻撃をされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004890_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004890</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004889:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12506;&#12540;&#12472;&#12467;&#12531;&#12486;&#12531;&#12484;&#12434;&#20605;&#36896;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004889_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004889_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004889_AD_1.html</id>
    <published>2012-10-15T10:19:57+09:00</published>
    <updated>2012-10-15T10:19:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品は、SELECT 要素のメニューを持つ Web ページから離れるナビゲーションを適切に処理しないため、ページコンテンツを偽造される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004889_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004889</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004888:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398;&#12502;&#12521;&#12454;&#12470;&#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004888_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004888_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004888_AD_1.html</id>
    <published>2012-10-15T10:05:57+09:00</published>
    <updated>2012-10-15T10:05:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品のブラウザエンジンには、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004888_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <sec:identifier>JVNDB-2012-004888</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004887:&#35079;&#25968;&#12398; Mozilla &#35069;&#21697;&#12398;&#12502;&#12521;&#12454;&#12470;&#12456;&#12531;&#12472;&#12531;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004887_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004887_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004887_AD_1.html</id>
    <published>2012-10-15T10:03:02+09:00</published>
    <updated>2012-10-15T10:03:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Mozilla 製品のブラウザエンジンには、サービス運用妨害 (メモリ破損およびアプリケーションクラッシュ) 状態となる、または任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004887_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox"/>
    <category term="cpe:/a:mozilla:firefox_esr"/>
    <category term="cpe:/a:mozilla:seamonkey"/>
    <category term="cpe:/a:mozilla:thunderbird"/>
    <category term="cpe:/a:mozilla:thunderbird_esr"/>
    <sec:identifier>JVNDB-2012-004887</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-0227:flexgrid, opcsystems.net: Buffer overflow in the VSFlex7.VSFlexGrid ActiveX c...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0227_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0227_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0227_AD_1.html</id>
    <published>2012-10-12T00:00:00+09:00</published>
    <updated>2012-10-15T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the VSFlex7.VSFlexGrid ActiveX control in ComponentOne FlexGrid 7.1, as used in Open Automation Software OPC Systems.NET, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long archive file name argument to the Archive method.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-0227_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:componentone:flexgrid:7.1"/>
    <category term="cpe:/a:opcsystems:opcsystems.net:-"/>
    <category term="cpe:/a:opcsystems:opcsystems.net:4.0 and previous versions"/>
    <sec:identifier>CVE-2012-0227</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004886:Eduserv &#12395;&#12362;&#12369;&#12427;&#12513;&#12483;&#12475;&#12540;&#12472;&#12434;&#20605;&#36896;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004886_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004886_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004886_AD_1.html</id>
    <published>2012-10-12T16:49:09+09:00</published>
    <updated>2012-10-12T16:49:09+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Eduserv には、メッセージを偽造される、および認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004886_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:eduserv:eduserv"/>
    <sec:identifier>JVNDB-2012-004886</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004885:Java Open Single Sign-On Project Home &#12395;&#12362;&#12369;&#12427;&#12513;&#12483;&#12475;&#12540;&#12472;&#12434;&#20605;&#36896;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004885_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004885_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004885_AD_1.html</id>
    <published>2012-10-12T16:47:57+09:00</published>
    <updated>2012-10-12T16:47:57+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Java Open Single Sign-On Project Home (JOSSO) には、メッセージを偽造される、および認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004885_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:josso:java_open_single_sign-on_project_home"/>
    <sec:identifier>JVNDB-2012-004885</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004884:Apache Axis2 &#12395;&#12362;&#12369;&#12427;&#12513;&#12483;&#12475;&#12540;&#12472;&#12434;&#20605;&#36896;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004884_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004884_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004884_AD_1.html</id>
    <published>2012-10-12T16:45:07+09:00</published>
    <updated>2012-10-12T16:45:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Axis2 には、メッセージを偽造される、および認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004884_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:axis2"/>
    <sec:identifier>JVNDB-2012-004884</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004883:&#35079;&#25968;&#12398;&#35069;&#21697;&#12391;&#20351;&#29992;&#12373;&#12428;&#12427; dracut &#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004883_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004883_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004883_AD_1.html</id>
    <published>2012-10-12T16:43:11+09:00</published>
    <updated>2012-10-12T16:43:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Red Hat Enterprise Linux、Fedora、および他の製品で使用される dracut の dracut.sh には、world-readable パーミッション (誰でも読み取り可能な権限) を持つ initramfs イメージを生成するため、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004883_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:fedoraproject:dracut"/>
    <category term="cpe:/o:fedoraproject:fedora"/>
    <category term="cpe:/o:redhat:enterprise_linux"/>
    <sec:identifier>JVNDB-2012-004883</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004882:Apache Axis2 &#12395;&#12362;&#12369;&#12427;&#12513;&#12483;&#12475;&#12540;&#12472;&#12434;&#20605;&#36896;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004882_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004882_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004882_AD_1.html</id>
    <published>2012-10-12T16:08:23+09:00</published>
    <updated>2012-10-12T16:08:23+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Apache Axis2 には、メッセージを偽造される、および認証を回避される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004882_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:apache:axis2"/>
    <sec:identifier>JVNDB-2012-004882</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004881:CakePHP &#12398; XML &#12463;&#12521;&#12473;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12501;&#12449;&#12452;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004881_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004881_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004881_AD_1.html</id>
    <published>2012-10-12T16:06:26+09:00</published>
    <updated>2012-10-12T16:06:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
CakePHP の XML クラスには、任意のファイルを読まれる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004881_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cakefoundation:cakephp"/>
    <sec:identifier>JVNDB-2012-004881</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004880:GLPI-PROJECT GLPI &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004880_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004880_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004880_AD_1.html</id>
    <published>2012-10-12T15:46:26+09:00</published>
    <updated>2012-10-12T15:46:26+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GLPI-PROJECT GLPI には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004880_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:glpi-project:glpi"/>
    <sec:identifier>JVNDB-2012-004880</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004879:GLPI-PROJECT GLPI &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004879_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004879_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004879_AD_1.html</id>
    <published>2012-10-12T15:45:18+09:00</published>
    <updated>2012-10-12T15:45:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GLPI-PROJECT GLPI には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004879_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:glpi-project:glpi"/>
    <sec:identifier>JVNDB-2012-004879</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004878:OpenTTD &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004878_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004878_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004878_AD_1.html</id>
    <published>2012-10-12T15:23:30+09:00</published>
    <updated>2012-10-12T15:23:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenTTD は、water tile を取り除くリクエストを適切に検証しないため、サービス運用妨害 (NULL ポインタデリファレンスおよびサーバクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004878_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openttd:openttd"/>
    <sec:identifier>JVNDB-2012-004878</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004877:WordPress &#29992; Pay With Tweet &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004877_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004877_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004877_AD_1.html</id>
    <published>2012-10-12T15:21:55+09:00</published>
    <updated>2012-10-12T15:21:55+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Pay With Tweet プラグインには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004877_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress:pay-with-tweet"/>
    <sec:identifier>JVNDB-2012-004877</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004876:WordPress &#29992; Pay With Tweet &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004876_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004876_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004876_AD_1.html</id>
    <published>2012-10-12T15:20:07+09:00</published>
    <updated>2012-10-12T15:20:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Pay With Tweet プラグインの pay.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004876_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wordpress:pay-with-tweet"/>
    <sec:identifier>JVNDB-2012-004876</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004875:MangosWeb Enhanced &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004875_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004875_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004875_AD_1.html</id>
    <published>2012-10-12T15:18:48+09:00</published>
    <updated>2012-10-12T15:18:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MangosWeb Enhanced には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004875_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wilson_steven:mangosweb_enhanced"/>
    <sec:identifier>JVNDB-2012-004875</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004874:TinyWebGallery &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004874_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004874_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004874_AD_1.html</id>
    <published>2012-10-12T15:18:05+09:00</published>
    <updated>2012-10-12T15:18:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TinyWebGallery には、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004874_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tinywebgallery:tinywebgallery"/>
    <sec:identifier>JVNDB-2012-004874</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004873:WordPress &#29992; WP Live.php &#12514;&#12472;&#12517;&#12540;&#12523;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004873_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004873_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004873_AD_1.html</id>
    <published>2012-10-12T15:11:10+09:00</published>
    <updated>2012-10-12T15:11:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 WP Live.php モジュールの wp-live.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004873_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bencemeszaros:wp-livephp"/>
    <sec:identifier>JVNDB-2012-004873</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004872:IPtools &#12398; Remote command server &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004872_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004872_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004872_AD_1.html</id>
    <published>2012-10-12T15:06:05+09:00</published>
    <updated>2012-10-12T15:06:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IPtools の Remote command server (Rcmd.bat) には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004872_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kepler_lam:iptools"/>
    <sec:identifier>JVNDB-2012-004872</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004871:IPtools &#12398; WebServer &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004871_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004871_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004871_AD_1.html</id>
    <published>2012-10-12T15:03:03+09:00</published>
    <updated>2012-10-12T15:03:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IPtools の WebServer (Thttpd.bat) には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004871_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kepler_lam:iptools"/>
    <sec:identifier>JVNDB-2012-004871</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004870:Limny &#12398; admin/login.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004870_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004870_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004870_AD_1.html</id>
    <published>2012-10-12T15:01:16+09:00</published>
    <updated>2012-10-12T15:01:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Limny の admin/login.php には、&quot;PHP_SELF&quot; 変数に関する処理に不備があるため、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004870_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:limny:limny"/>
    <sec:identifier>JVNDB-2012-004870</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004869:SenseSites CommonSense CMS &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004869_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004869_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004869_AD_1.html</id>
    <published>2012-10-12T14:59:59+09:00</published>
    <updated>2012-10-12T14:59:59+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SenseSites CommonSense CMS には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004869_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:michau_enterprises:sensesites_commonsense_cms"/>
    <sec:identifier>JVNDB-2012-004869</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004868:Otterware StatIt &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004868_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004868_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004868_AD_1.html</id>
    <published>2012-10-12T14:58:28+09:00</published>
    <updated>2012-10-12T14:58:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Otterware StatIt の statistik.php には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004868_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:otterware:statit"/>
    <sec:identifier>JVNDB-2012-004868</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004867:MySQL &#12395;&#12362;&#12369;&#12427;&#27177;&#38480;&#12481;&#12455;&#12483;&#12463;&#12434;&#22238;&#36991;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004867_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004867_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004867_AD_1.html</id>
    <published>2012-10-12T14:51:03+09:00</published>
    <updated>2012-10-12T14:51:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
MySQL には、mysql_unpacked_real_data_home 値の計算に不備があるため、MyISAM テーブル上で、変更された DATA DIRECTORY または INDEX DIRECTORY 引数をもつ CREATE TABLE を呼び出すことにより、権限チェックを回避される脆弱性が存在します。  本脆弱性は、CVE-2009-4030 のリグレッションに起因する脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004867_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mysql:mysql"/>
    <sec:identifier>JVNDB-2012-004867</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004866:ISC BIND &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (named &#12487;&#12540;&#12514;&#12531;&#12495;&#12531;&#12464;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004866_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004866_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004866_AD_1.html</id>
    <published>2012-10-12T12:26:16+09:00</published>
    <updated>2012-10-12T12:26:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
ISC BIND には、サービス運用妨害 (named デーモンハング) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004866_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:bind"/>
    <sec:identifier>JVNDB-2012-004866</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004865:tinyproxy &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (CPU &#12362;&#12424;&#12403;&#12513;&#12514;&#12522;&#28040;&#36027;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004865_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004865_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004865_AD_1.html</id>
    <published>2012-10-12T11:58:10+09:00</published>
    <updated>2012-10-12T11:58:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
tinyproxy には、サービス運用妨害 (CPU およびメモリ消費) となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004865_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:banu:tinyproxy"/>
    <sec:identifier>JVNDB-2012-004865</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004864:OpenStack Keystone &#12395;&#12362;&#12369;&#12427;&#12486;&#12490;&#12531;&#12488;&#12398;&#12522;&#12477;&#12540;&#12473;&#12395;&#12450;&#12463;&#12475;&#12473;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004864_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004864_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004864_AD_1.html</id>
    <published>2012-10-12T11:35:02+09:00</published>
    <updated>2012-10-12T11:35:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Keystone は、無効なテナントに対する認証トークンを適切に処理しないため、テナントのリソースにアクセスされる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004864_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:keystone"/>
    <sec:identifier>JVNDB-2012-004864</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004863:OpenStack Keystone &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12518;&#12540;&#12470;&#12398;&#12525;&#12540;&#12523;&#12434;&#35501;&#12414;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004863_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004863_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004863_AD_1.html</id>
    <published>2012-10-12T11:31:58+09:00</published>
    <updated>2012-10-12T11:31:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
OpenStack Keystone の (1) OS-KSADM/services および (2) tenant API は、X-Auth-Token を適切に検証しないため、任意のユーザのロールを読まれる、または任意のサービスを取得される、生成される、または削除される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004863_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:openstack:keystone"/>
    <sec:identifier>JVNDB-2012-004863</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004862:Limny &#12398; admin/preview.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004862_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004862_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004862_AD_1.html</id>
    <published>2012-10-12T11:18:32+09:00</published>
    <updated>2012-10-12T11:18:32+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Limny の admin/preview.php には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004862_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:limny:limny"/>
    <sec:identifier>JVNDB-2012-004862</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004861:GraphicsClone Script &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004861_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004861_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004861_AD_1.html</id>
    <published>2012-10-12T11:17:53+09:00</published>
    <updated>2012-10-12T11:17:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
GraphicsClone Script の search/ には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004861_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cloneforest:graphicsclone_script"/>
    <sec:identifier>JVNDB-2012-004861</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004860:FreeBSD &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004860_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004860_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004860_AD_1.html</id>
    <published>2012-10-12T10:35:54+09:00</published>
    <updated>2012-10-12T10:35:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
FreeBSD の SCTP の実装には、サービス運用妨害 (NULL ポインタデリファレンスおよびカーネルパニック) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004860_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:freebsd:freebsd"/>
    <sec:identifier>JVNDB-2012-004860</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4193:firefox, firefox_esr, thunderbird, thunderbird_esr, seamonkey: Mozilla Firefox before 16.0.1, Firefox ESR 10.x bef...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4193_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4193_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4193_AD_1.html</id>
    <published>2012-10-12T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 16.0.1, Firefox ESR 10.x before 10.0.9, Thunderbird before 16.0.1, Thunderbird ESR 10.x before 10.0.9, and SeaMonkey before 2.13.1 omit a security check in the defaultValue function during the unwrapping of security wrappers, which allows remote attackers to bypass the Same Origin Policy and read the properties of a Location object, or execute arbitrary JavaScript code, via a crafted web site.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4193_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.0:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.1"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.11"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.12"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.13"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.14"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.15"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.16"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.17"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.18"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.19"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.2"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.3"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.4"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.5"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.6"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.7"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1.9"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:alpha"/>
    <category term="cpe:/a:mozilla:seamonkey:1.1:beta"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:1.5.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.8"/>
    <sec:identifier>CVE-2012-4193</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4192:firefox, seamonkey, thunderbird: Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonk...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4192_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4192_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4192_AD_1.html</id>
    <published>2012-10-12T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonkey 2.13 allow remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site, a related issue to CVE-2012-4193.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4192_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:16.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0"/>
    <sec:identifier>CVE-2012-4192</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4191:firefox, thunderbird, seamonkey: The mozilla::net::FailDelayManager::Lookup function...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4191_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4191_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4191_AD_1.html</id>
    <published>2012-10-12T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The mozilla::net::FailDelayManager::Lookup function in the WebSockets implementation in Mozilla Firefox before 16.0.1, Thunderbird before 16.0.1, and SeaMonkey before 2.13.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4191_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.2"/>
    <category term="cpe:/a:mozilla:thunderbird:0.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:16.0 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-4191</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4190:cyanogenmod, firefox: The FT2FontEntry::CreateFontEntry function in FreeT...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4190_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4190_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4190_AD_1.html</id>
    <published>2012-10-12T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4190_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:0.1"/>
    <category term="cpe:/a:mozilla:firefox:0.10"/>
    <category term="cpe:/a:mozilla:firefox:0.10.1"/>
    <category term="cpe:/a:mozilla:firefox:0.2"/>
    <category term="cpe:/a:mozilla:firefox:0.3"/>
    <category term="cpe:/a:mozilla:firefox:0.4"/>
    <category term="cpe:/a:mozilla:firefox:0.5"/>
    <category term="cpe:/a:mozilla:firefox:0.6"/>
    <category term="cpe:/a:mozilla:firefox:0.6.1"/>
    <category term="cpe:/a:mozilla:firefox:0.7"/>
    <category term="cpe:/a:mozilla:firefox:0.7.1"/>
    <category term="cpe:/a:mozilla:firefox:0.8"/>
    <category term="cpe:/a:mozilla:firefox:0.9"/>
    <category term="cpe:/a:mozilla:firefox:0.9.1"/>
    <category term="cpe:/a:mozilla:firefox:0.9.2"/>
    <category term="cpe:/a:mozilla:firefox:0.9.3"/>
    <category term="cpe:/a:mozilla:firefox:0.9:rc"/>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1"/>
    <category term="cpe:/a:mozilla:firefox:16.0 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/o:cyanogenmod:cyanogenmod:10"/>
    <sec:identifier>CVE-2012-4190</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5386:phppaleo: Directory traversal vulnerability in index.php in p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5386_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5386_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5386_AD_1.html</id>
    <published>2012-10-11T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in index.php in phpPaleo 4.8b180 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phppaleo4_lang cookie, a different vulnerability than CVE-2012-1671.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5386_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nicolas_tormo:phppaleo:4.8b180"/>
    <sec:identifier>CVE-2012-5386</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5385:webcalendar: install/index.php in Craig Knudsen WebCalendar befo...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5385_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5385_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5385_AD_1.html</id>
    <published>2012-10-11T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
install/index.php in Craig Knudsen WebCalendar before 1.2.5 allows remote attackers to modify settings.php and possibly execute arbitrary code via vectors related to the user theme preference.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5385_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.0:rc1"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.0:rc2"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.0:rc3"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.1"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.2"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.3"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.4"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.5"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.1.6"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2.0"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2.1"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2.2"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2.3"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2.4"/>
    <category term="cpe:/a:craig_knudsen:webcalendar:1.2:b1"/>
    <sec:identifier>CVE-2012-5385</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5384:webcalendar: Multiple cross-site scripting (XSS) vulnerabilities...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5384_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5384_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5384_AD_1.html</id>
    <published>2012-10-11T00:00:00+09:00</published>
    <updated>2012-10-12T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Multiple cross-site scripting (XSS) vulnerabilities in Craig Knudsen WebCalendar allow remote attackers to inject arbitrary web script or HTML via the (1) $name or (2) $description variables in edit_entry_handler.php, or (3) $url, (4) $tempfullname, or (5) $ext_users[] variables in view_entry.php, different vectors than CVE-2012-0846.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5384_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:craig_knudsen:webcalendar:-"/>
    <sec:identifier>CVE-2012-5384</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004859:Microsoft SQL Server &#12398; SQL Server Report Manager &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004859_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004859_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004859_AD_1.html</id>
    <published>2012-10-11T18:54:08+09:00</published>
    <updated>2012-10-11T18:54:08+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft SQL Server の SQL Server Report Manager には、クロスサイトスクリプティングの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「折り返し型 XSS の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004859_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:sql_server"/>
    <sec:identifier>JVNDB-2012-004859</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004858:Microsoft Windows Server 2008 &#12362;&#12424;&#12403; Windows 7 &#12398; Kerberos &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004858_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004858_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004858_AD_1.html</id>
    <published>2012-10-11T18:53:27+09:00</published>
    <updated>2012-10-11T18:53:27+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows Server 2008 および Microsoft Windows 7 の Kerberos サーバには、サービス運用妨害 (NULL ポインタデリファレンスおよびリブート) 状態となる脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Kerberos の NULL 逆参照の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004858_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-004858</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004857:Microsoft Windows &#12398;&#12459;&#12540;&#12493;&#12523;&#12395;&#12362;&#12369;&#12427;&#25972;&#25968;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004857_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004857_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004857_AD_1.html</id>
    <published>2012-10-11T18:52:36+09:00</published>
    <updated>2012-10-11T18:52:36+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Windows のカーネルには、整数オーバーフローの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Windows カーネルの整数オーバーフローの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004857_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:microsoft:windows-nt:2003"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2003::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:2008"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::itanium"/>
    <category term="cpe:/o:microsoft:windows-nt:2008::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:vista"/>
    <category term="cpe:/o:microsoft:windows-nt:vista::x64"/>
    <category term="cpe:/o:microsoft:windows-nt:xp"/>
    <category term="cpe:/o:microsoft:windows-nt:xp::x64-pro"/>
    <category term="cpe:/o:microsoft:windows_7:::x32"/>
    <category term="cpe:/o:microsoft:windows_7:::x64"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:itanium"/>
    <category term="cpe:/o:microsoft:windows_server_2008::r2:x64"/>
    <sec:identifier>JVNDB-2012-004857</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004856:&#35079;&#25968;&#12398; Microsoft &#35069;&#21697;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004856_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004856_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004856_AD_1.html</id>
    <published>2012-10-11T18:50:16+09:00</published>
    <updated>2012-10-11T18:50:16+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft 製品には、クロスサイトスクリプティングの脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「HTML のサニタイズの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004856_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:groove_server"/>
    <category term="cpe:/a:microsoft:infopath"/>
    <category term="cpe:/a:microsoft:lync"/>
    <category term="cpe:/a:microsoft:office_communicator"/>
    <category term="cpe:/a:microsoft:office_web_apps"/>
    <category term="cpe:/a:microsoft:sharepoint_foundation"/>
    <category term="cpe:/a:microsoft:sharepoint_server"/>
    <category term="cpe:/a:microsoft:sharepoint_services"/>
    <sec:identifier>JVNDB-2012-004856</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004855:Microsoft Works 9 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004855_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004855_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004855_AD_1.html</id>
    <published>2012-10-11T18:49:05+09:00</published>
    <updated>2012-10-11T18:49:05+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Works 9 には、任意のコードを実行される、またはサービス運用妨害 (ヒープメモリの破損) 状態となる脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Works ヒープの脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004855_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:works"/>
    <sec:identifier>JVNDB-2012-004855</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004854:&#35079;&#25968;&#12398; Microsoft &#35069;&#21697; &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004854_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004854_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004854_AD_1.html</id>
    <published>2012-10-11T18:47:22+09:00</published>
    <updated>2012-10-11T18:47:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の Microsoft 製品には、解放済みメモリの使用 (Use-after-free) により、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「RTF ファイル listid の 解放後使用 (Use-After-Free) の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004854_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:office_compatibility_pack"/>
    <category term="cpe:/a:microsoft:office_web_apps"/>
    <category term="cpe:/a:microsoft:word"/>
    <category term="cpe:/a:microsoft:word_automation_services"/>
    <category term="cpe:/a:microsoft:word_viewer"/>
    <sec:identifier>JVNDB-2012-004854</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004853:Microsoft Word 2007 &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004853_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004853_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004853_AD_1.html</id>
    <published>2012-10-11T18:44:17+09:00</published>
    <updated>2012-10-11T18:44:17+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Microsoft Word 2007 は、Word 文書の解析中にメモリを適切に処理しないため、任意のコードを実行される脆弱性が存在します。  マイクロソフトセキュリティ情報には、この脆弱性は「Word PAPX セクション破損の脆弱性」と記載されています。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004853_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:microsoft:word"/>
    <sec:identifier>JVNDB-2012-004853</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004852:WordPress &#29992; BackWPup &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; PHP &#12522;&#12514;&#12540;&#12488;&#12501;&#12449;&#12452;&#12523;&#12452;&#12531;&#12463;&#12523;&#12540;&#12472;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004852_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004852_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004852_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 BackWPup プラグインには、PHP リモートファイルインクルージョンの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004852_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:backwpup:backwpup"/>
    <sec:identifier>JVNDB-2012-004852</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004851:Barracuda Spam &amp; Virus Firewall 600 &#12398;&#12501;&#12449;&#12540;&#12512;&#12454;&#12455;&#12450;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004851_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004851_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004851_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Barracuda Spam &amp; Virus Firewall 600 のファームウェアには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004851_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:barracudanetworks:spam_%26_virus_firewall_600"/>
    <category term="cpe:/o:barracudanetworks:spam_%26_virus_firewall_600_firmware"/>
    <sec:identifier>JVNDB-2012-004851</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004850:php ireport &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004850_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004850_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004850_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
php ireport には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004850_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:php_ireport_project:php_ireport"/>
    <sec:identifier>JVNDB-2012-004850</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004849:viewgit &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004849_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004849_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004849_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
viewgit には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004849_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:heikki_hokkanen:viewgit"/>
    <sec:identifier>JVNDB-2012-004849</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004848:Snitz Forums 2000 &#12398; forum.asp &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004848_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004848_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004848_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Snitz Forums 2000 の forum.asp には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004848_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:snitz:snitz_forums_2000"/>
    <sec:identifier>JVNDB-2012-004848</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004847:Tribiq CMS &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004847_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004847_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004847_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tribiq CMS には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004847_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tribiq:tribiq_cms"/>
    <sec:identifier>JVNDB-2012-004847</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005185:Bigware Shop &#12398; main_bigware_43.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005185_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005185_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005185_AD_1.html</id>
    <published>2012-10-11T15:25:54+09:00</published>
    <updated>2012-10-11T15:25:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Bigware Shop の main_bigware_43.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005185_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bigware:bigware_shop"/>
    <sec:identifier>JVNDB-2011-005185</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004846:ComponentOne FlexGrid &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004846_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004846_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004846_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Open Automation Software OPC Systems.NET で使用される ComponentOne FlexGrid の VSFlex7.VSFlexGrid ActiveX コントロールには、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004846_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:componentone:flexgrid"/>
    <category term="cpe:/a:opcsystems:opcsystems.net"/>
    <sec:identifier>JVNDB-2012-004846</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004845:WordPress &#29992; Kish Guest Posting &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004845_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004845_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004845_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Kish Guest Posting プラグインの uploadify/scripts/uploadify.php には、ファイルをアップロードされることにより、任意のコードを実行される脆弱性が存在します。  本脆弱性は、CVE-2012-1125 に対する修正が不十分だったことによる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004845_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kishore_asokan:kish_guest_posting_plugin"/>
    <sec:identifier>JVNDB-2012-004845</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004844:WordPress &#29992; WP e-Commerce &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004844_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004844_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004844_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 WP e-Commerce プラグインには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004844_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:getshopped:wp_e-commerce"/>
    <sec:identifier>JVNDB-2012-004844</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2011-005184:WordPress &#29992; Kish Guest Posting &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005184_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005184_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005184_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Kish Guest Posting プラグインの uploadify/scripts/uploadify.php には、ファイルのアップロードを制限しない不備があるため、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2011-005184_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:kishore_asokan:kish_guest_posting_plugin"/>
    <sec:identifier>JVNDB-2011-005184</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005023:Redmine &#12398; bazaar &#12522;&#12509;&#12472;&#12488;&#12522;&#12450;&#12480;&#12503;&#12479;&#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12510;&#12531;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005023_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005023_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005023_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Redmine の bazaar リポジトリアダプタには、任意のコマンドを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005023_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redmine:redmine"/>
    <sec:identifier>JVNDB-2010-005023</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005022:Redmine &#12398;&#12486;&#12461;&#12473;&#12479;&#12452;&#12523;&#12501;&#12457;&#12540;&#12510;&#12483;&#12479;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005022_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005022_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005022_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Redmine のテキスタイルフォーマッタには、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005022_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redmine:redmine"/>
    <sec:identifier>JVNDB-2010-005022</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2010-005021:Redmine &#12398; bazaar &#12522;&#12509;&#12472;&#12488;&#12522;&#12450;&#12480;&#12503;&#12479;&#12395;&#12362;&#12369;&#12427;&#37325;&#35201;&#12394;&#24773;&#22577;&#12434;&#21462;&#24471;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005021_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005021_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005021_AD_1.html</id>
    <published>2012-10-11T15:25:53+09:00</published>
    <updated>2012-10-11T15:25:53+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Redmine の bazaar リポジトリアダプタには、重要な情報を取得される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2010-005021_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:redmine:redmine"/>
    <sec:identifier>JVNDB-2010-005021</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004843:Tiny Server &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004843_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004843_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004843_AD_1.html</id>
    <published>2012-10-11T15:22:30+09:00</published>
    <updated>2012-10-11T15:22:30+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tiny Server には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004843_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:saurabh_gupta:tiny_server"/>
    <sec:identifier>JVNDB-2012-004843</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004842:Pre Printing Press &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004842_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004842_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004842_AD_1.html</id>
    <published>2012-10-11T15:21:51+09:00</published>
    <updated>2012-10-11T15:21:51+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pre Printing Press の product_desc.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004842_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:preprojects:pre_printing_press"/>
    <sec:identifier>JVNDB-2012-004842</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004841:Pre Printing Press &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004841_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004841_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004841_AD_1.html</id>
    <published>2012-10-11T15:21:19+09:00</published>
    <updated>2012-10-11T15:21:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Pre Printing Press の page.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004841_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:preprojects:pre_printing_press"/>
    <sec:identifier>JVNDB-2012-004841</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004840:at32 Reverse Proxy &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004840_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004840_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004840_AD_1.html</id>
    <published>2012-10-11T15:17:19+09:00</published>
    <updated>2012-10-11T15:17:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
at32 Reverse Proxy には、サービス運用妨害 (NULL ポインタデリファレンスおよびアプリケーションクラッシュ) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004840_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:at32:reverse_proxy"/>
    <sec:identifier>JVNDB-2012-004840</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004839:asaanCart &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004839_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004839_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004839_AD_1.html</id>
    <published>2012-10-11T15:14:18+09:00</published>
    <updated>2012-10-11T15:14:18+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
asaanCart には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004839_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nasir_khan:asaancart"/>
    <sec:identifier>JVNDB-2012-004839</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004838:asaanCart &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004838_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004838_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004838_AD_1.html</id>
    <published>2012-10-11T15:13:40+09:00</published>
    <updated>2012-10-11T15:13:40+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
asaanCart には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004838_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nasir_khan:asaancart"/>
    <sec:identifier>JVNDB-2012-004838</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004837:TYPSoft FTP Server &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004837_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004837_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004837_AD_1.html</id>
    <published>2012-10-11T15:05:58+09:00</published>
    <updated>2012-10-11T15:05:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TYPSoft FTP Server には、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004837_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:typsoft:typsoft_ftp_server"/>
    <sec:identifier>JVNDB-2012-004837</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004836:phpPaleo &#12398; index.php &#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004836_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004836_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004836_AD_1.html</id>
    <published>2012-10-11T15:04:50+09:00</published>
    <updated>2012-10-11T15:04:50+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
phpPaleo の index.php には、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004836_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:nicolas_tormo:phppaleo"/>
    <sec:identifier>JVNDB-2012-004836</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004835:WordPress &#29992; Mingle Forum &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004835_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004835_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004835_AD_1.html</id>
    <published>2012-10-11T15:04:07+09:00</published>
    <updated>2012-10-11T15:04:07+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Mingle Forum プラグインには、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004835_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cartpauj:mingle-forum"/>
    <sec:identifier>JVNDB-2012-004835</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004834:WordPress &#29992; Mingle Forum &#12503;&#12521;&#12464;&#12452;&#12531;&#12398; fs-admin/fs-admin.php &#12395;&#12362;&#12369;&#12427; SQL &#12452;&#12531;&#12472;&#12455;&#12463;&#12471;&#12519;&#12531;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004834_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004834_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004834_AD_1.html</id>
    <published>2012-10-11T15:03:31+09:00</published>
    <updated>2012-10-11T15:03:31+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Mingle Forum プラグインの fs-admin/fs-admin.php には、SQL インジェクションの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004834_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cartpauj:mingle-forum"/>
    <sec:identifier>JVNDB-2012-004834</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004833:IDevSpot iSupport &#12398; admin/function.php &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004833_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004833_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004833_AD_1.html</id>
    <published>2012-10-11T15:02:48+09:00</published>
    <updated>2012-10-11T15:02:48+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
IDevSpot iSupport の admin/function.php には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004833_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:idevspot:isupport"/>
    <sec:identifier>JVNDB-2012-004833</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004832:WordPress &#29992; Shortcode Redirect &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004832_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004832_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004832_AD_1.html</id>
    <published>2012-10-11T15:01:11+09:00</published>
    <updated>2012-10-11T15:01:11+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 Shortcode Redirect プラグインの scr.php 内の scr_do_redirect 関数には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004832_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cartpauj:shortcode-redirect"/>
    <sec:identifier>JVNDB-2012-004832</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004831:Tracker Software PDF-XChange &#12398; pdfxctrl.dll &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004831_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004831_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004831_AD_1.html</id>
    <published>2012-10-11T15:00:10+09:00</published>
    <updated>2012-10-11T15:00:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Tracker Software PDF-XChange の pdfxctrl.dll 内の Pdf Printer Preferences ActiveX コントロールには、バッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004831_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tracker-software:pdf-xchange"/>
    <sec:identifier>JVNDB-2012-004831</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004830:Craig Knudsen WebCalendar &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004830_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004830_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004830_AD_1.html</id>
    <published>2012-10-11T14:58:52+09:00</published>
    <updated>2012-10-11T14:58:52+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Craig Knudsen WebCalendar には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004830_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:k5n:webcalendar"/>
    <sec:identifier>JVNDB-2012-004830</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004829:Xavi X7968 &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004829_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004829_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004829_AD_1.html</id>
    <published>2012-10-11T14:57:35+09:00</published>
    <updated>2012-10-11T14:57:35+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xavi X7968 の webconfig/admin_passwd/passwd.html/admin_passwd には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004829_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:xavi:x7968"/>
    <sec:identifier>JVNDB-2012-004829</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004828:Xavi X7968 &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12473;&#12463;&#12522;&#12503;&#12486;&#12451;&#12531;&#12464;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004828_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004828_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004828_AD_1.html</id>
    <published>2012-10-11T14:57:04+09:00</published>
    <updated>2012-10-11T14:57:04+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Xavi X7968 には、クロスサイトスクリプティングの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004828_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:xavi:x7968"/>
    <sec:identifier>JVNDB-2012-004828</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004827:TikiWiki CMS/Groupware &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398; Web &#12469;&#12452;&#12488;&#12398;&#12506;&#12540;&#12472;&#12434;&#12525;&#12540;&#12489;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004827_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004827_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004827_AD_1.html</id>
    <published>2012-10-11T14:55:22+09:00</published>
    <updated>2012-10-11T14:55:22+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
TikiWiki CMS/Groupware の tiki-featured_link.php には、フレームインジェクションが可能な不備があるため、フィッシング攻撃を実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004827_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:tikiwiki:tikiwiki_cms%2Fgroupware"/>
    <sec:identifier>JVNDB-2012-004827</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004826:Sagem F@ST 2604 &#12398; password.cgi &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004826_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004826_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004826_AD_1.html</id>
    <published>2012-10-11T14:53:02+09:00</published>
    <updated>2012-10-11T14:53:02+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Sagem F@ST 2604 の password.cgi には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004826_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:sagem:f%40st_2604"/>
    <category term="cpe:/o:sagem:f%40st_2604_firmware"/>
    <sec:identifier>JVNDB-2012-004826</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004825:&#35079;&#25968;&#12398; D-Link &#35069;&#21697;&#12398; setup/security.cgi &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004825_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004825_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004825_AD_1.html</id>
    <published>2012-10-11T14:48:12+09:00</published>
    <updated>2012-10-11T14:48:12+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
複数の D-Link 製品の setup/security.cgi には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004825_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link_systems:dcs-2000"/>
    <category term="cpe:/h:d-link_systems:dcs-5300"/>
    <category term="cpe:/h:d-link_systems:dcs-900"/>
    <sec:identifier>JVNDB-2012-004825</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004824:SocialCMS &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004824_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004824_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004824_AD_1.html</id>
    <published>2012-10-11T14:42:10+09:00</published>
    <updated>2012-10-11T14:42:10+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
SocialCMS には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004824_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:socialcms:socialcms"/>
    <sec:identifier>JVNDB-2012-004824</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004823:D-Link DSL-2640B &#12501;&#12449;&#12540;&#12512;&#12454;&#12455;&#12450;&#12398; redpass.cgi &#12395;&#12362;&#12369;&#12427;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004823_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004823_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004823_AD_1.html</id>
    <published>2012-10-11T14:38:46+09:00</published>
    <updated>2012-10-11T14:38:46+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
D-Link DSL-2640B ファームウェアの redpass.cgi には、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004823_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:d-link_systems:dsl-2640b"/>
    <category term="cpe:/o:d-link_systems:dsl-2640b_firmware"/>
    <sec:identifier>JVNDB-2012-004823</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004822:TORCS &#12362;&#12424;&#12403; Speed Dreams &#12395;&#12362;&#12369;&#12427;&#12473;&#12479;&#12483;&#12463;&#12505;&#12540;&#12473;&#12398;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004822_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004822_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004822_AD_1.html</id>
    <published>2012-10-11T14:34:03+09:00</published>
    <updated>2012-10-11T14:34:03+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
The Open Racing Car Simulator (TORCS) および Speed Dreams の modules/graphic/ssgraph/grsound.cpp には、スタックベースのバッファオーバーフローの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004822_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bernhard_wymann:torcs"/>
    <category term="cpe:/a:speed-dreams:speed_dreams"/>
    <sec:identifier>JVNDB-2012-004822</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004821:WordPress &#29992; BackWPup &#12503;&#12521;&#12464;&#12452;&#12531;&#12395;&#12362;&#12369;&#12427;&#12487;&#12451;&#12524;&#12463;&#12488;&#12522;&#12488;&#12521;&#12496;&#12540;&#12469;&#12523;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004821_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004821_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004821_AD_1.html</id>
    <published>2012-10-11T14:06:28+09:00</published>
    <updated>2012-10-11T14:06:28+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
WordPress 用 BackWPup プラグインには、ディレクトリトラバーサルの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004821_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:backwpup:backwpup"/>
    <sec:identifier>JVNDB-2012-004821</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004820:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004820_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004820_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004820_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004820_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004820</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004819:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004819_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004819_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004819_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004819_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004819</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004818:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004818_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004818_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004818_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004818_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004818</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004817:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004817_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004817_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004817_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004817_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004817</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004816:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004816_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004816_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004816_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004816_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004816</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004815:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004815_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004815_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004815_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004815_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004815</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004814:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004814_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004814_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004814_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004814_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004814</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004813:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004813_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004813_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004813_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004813_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004813</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004812:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004812_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004812_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004812_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004812_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004812</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004811:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004811_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004811_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004811_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004811_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004811</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004810:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004810_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004810_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004810_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004810_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004810</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004809:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004809_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004809_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004809_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004809_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004809</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004808:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004808_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004808_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004808_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004808_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004808</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004807:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004807_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004807_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004807_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004807_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004807</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004806:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004806_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004806_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004806_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004806_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004806</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004805:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004805_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004805_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004805_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004805_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004805</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004804:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004804_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004804_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004804_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004804_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004804</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004803:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004803_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004803_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004803_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004803_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004803</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004802:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004802_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004802_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004802_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004802_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004802</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004801:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004801_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004801_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004801_AD_1.html</id>
    <published>2012-10-11T10:56:14+09:00</published>
    <updated>2012-10-11T10:56:14+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004801_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004801</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004800:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004800_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004800_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004800_AD_1.html</id>
    <published>2012-10-11T10:56:13+09:00</published>
    <updated>2012-10-11T10:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、任意のコードを実行される、またはサービス運用妨害 (メモリ破損) 状態となる脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のメモリ破損の脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004800_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004800</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004799:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004799_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004799_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004799_AD_1.html</id>
    <published>2012-10-11T10:56:13+09:00</published>
    <updated>2012-10-11T10:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004799_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004799</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004798:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004798_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004798_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004798_AD_1.html</id>
    <published>2012-10-11T10:56:13+09:00</published>
    <updated>2012-10-11T10:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004798_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004798</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004797:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004797_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004797_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004797_AD_1.html</id>
    <published>2012-10-11T10:56:13+09:00</published>
    <updated>2012-10-11T10:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004797_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004797</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004796:Adobe Flash Player &#12362;&#12424;&#12403; Adobe AIR &#12395;&#12362;&#12369;&#12427;&#12496;&#12483;&#12501;&#12449;&#12458;&#12540;&#12496;&#12540;&#12501;&#12525;&#12540;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004796_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004796_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004796_AD_1.html</id>
    <published>2012-10-11T10:56:13+09:00</published>
    <updated>2012-10-11T10:56:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Adobe Flash Player および Adobe AIR には、バッファオーバーフローの脆弱性が存在します。  本脆弱性は、APSB12-22 のリスト上に掲載されている他のバッファオーバーフローの脆弱性とは異なる脆弱性です。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004796_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:adobe:adobe_air"/>
    <category term="cpe:/a:adobe:flash_player"/>
    <category term="cpe:/a:google:chrome"/>
    <category term="cpe:/a:microsoft:ie"/>
    <category term="cpe:/o:microsoft:windows_8"/>
    <category term="cpe:/o:microsoft:windows_server"/>
    <sec:identifier>JVNDB-2012-004796</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004795:Google Chrome &#12395;&#12362;&#12369;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004795_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004795_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004795_AD_1.html</id>
    <published>2012-10-11T10:33:19+09:00</published>
    <updated>2012-10-11T10:33:19+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome は、Pepper プラグインのクラッシュを監視しないため、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004795_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004795</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004794:Google Chrome &#12398;&#12467;&#12531;&#12509;&#12472;&#12479;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004794_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004794_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004794_AD_1.html</id>
    <published>2012-10-11T10:32:54+09:00</published>
    <updated>2012-10-11T10:32:54+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome のコンポジタには、サービス運用妨害 (out-of-bounds read) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004794_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004794</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004793:Google Chrome &#12398; International Components for Unicode &#27231;&#33021;&#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (DoS) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004793_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004793_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004793_AD_1.html</id>
    <published>2012-10-11T10:32:25+09:00</published>
    <updated>2012-10-11T10:32:25+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome の International Components for Unicode (ICU) 機能には、正規表現に関する処理に不備があるため、サービス運用妨害 (out-of-bounds read) 状態となる脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004793_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004793</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004792:Google Chrome &#12395;&#12362;&#12369;&#12427;&#20219;&#24847;&#12398;&#12467;&#12540;&#12489;&#12434;&#23455;&#34892;&#12373;&#12428;&#12427;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004792_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004792_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004792_AD_1.html</id>
    <published>2012-10-11T10:31:58+09:00</published>
    <updated>2012-10-11T10:31:58+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome には、オーディオデバイスに関連して発生する競合状態により、任意のコードを実行される脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004792_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004792</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004791:Google Chrome &#12391;&#20351;&#29992;&#12373;&#12428;&#12427; Skia &#12395;&#12362;&#12369;&#12427;&#12469;&#12540;&#12499;&#12473;&#36939;&#29992;&#22952;&#23475; (&#12450;&#12503;&#12522;&#12465;&#12540;&#12471;&#12519;&#12531;&#12463;&#12521;&#12483;&#12471;&#12517;) &#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004791_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004791_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004791_AD_1.html</id>
    <published>2012-10-11T10:31:24+09:00</published>
    <updated>2012-10-11T10:31:24+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Google Chrome で使用される Skia は、テキストを適切にレンダリングしないため、サービス運用妨害 (アプリケーションクラッシュ) 状態となるなど、不特定の影響を受ける脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004791_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome"/>
    <sec:identifier>JVNDB-2012-004791</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>JVNDB-2012-004790:Cerberus FTP Server &#12395;&#12463;&#12525;&#12473;&#12469;&#12452;&#12488;&#12522;&#12463;&#12456;&#12473;&#12488;&#12501;&#12457;&#12540;&#12472;&#12455;&#12522;&#12398;&#33030;&#24369;&#24615;</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004790_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004790_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004790_AD_1.html</id>
    <published>2012-10-11T10:20:13+09:00</published>
    <updated>2012-10-11T10:20:13+09:00</updated>
    <author>
      <name>JVN iPedia</name>
    </author>
    <content type="html">
Cerberus FTP Server には、クロスサイトリクエストフォージェリの脆弱性が存在します。  Cerberus FTP Server のウェブインターフェースには、クロスサイトリクエストフォージェリの脆弱性が存在します。&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/JVNiPedia_JVNDB-2012-004790_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:cerberus:ftp_server"/>
    <sec:identifier>JVNDB-2012-004790</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5376:chrome: The Inter-process Communication (IPC) implementatio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5376_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5376_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5376_AD_1.html</id>
    <published>2012-10-11T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Inter-process Communication (IPC) implementation in Google Chrome before 22.0.1229.94 allows remote attackers to bypass intended sandbox restrictions and write to arbitrary files by leveraging access to a renderer process, a different vulnerability than CVE-2012-5112.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5376_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:22.0.1229.0"/>
    <category term="cpe:/a:google:chrome:22.0.1229.1"/>
    <category term="cpe:/a:google:chrome:22.0.1229.10"/>
    <category term="cpe:/a:google:chrome:22.0.1229.11"/>
    <category term="cpe:/a:google:chrome:22.0.1229.12"/>
    <category term="cpe:/a:google:chrome:22.0.1229.14"/>
    <category term="cpe:/a:google:chrome:22.0.1229.16"/>
    <category term="cpe:/a:google:chrome:22.0.1229.17"/>
    <category term="cpe:/a:google:chrome:22.0.1229.18"/>
    <category term="cpe:/a:google:chrome:22.0.1229.2"/>
    <category term="cpe:/a:google:chrome:22.0.1229.20"/>
    <category term="cpe:/a:google:chrome:22.0.1229.21"/>
    <category term="cpe:/a:google:chrome:22.0.1229.22"/>
    <category term="cpe:/a:google:chrome:22.0.1229.23"/>
    <category term="cpe:/a:google:chrome:22.0.1229.24"/>
    <category term="cpe:/a:google:chrome:22.0.1229.25"/>
    <category term="cpe:/a:google:chrome:22.0.1229.26"/>
    <category term="cpe:/a:google:chrome:22.0.1229.27"/>
    <category term="cpe:/a:google:chrome:22.0.1229.28"/>
    <category term="cpe:/a:google:chrome:22.0.1229.29"/>
    <category term="cpe:/a:google:chrome:22.0.1229.3"/>
    <category term="cpe:/a:google:chrome:22.0.1229.31"/>
    <category term="cpe:/a:google:chrome:22.0.1229.32"/>
    <category term="cpe:/a:google:chrome:22.0.1229.33"/>
    <category term="cpe:/a:google:chrome:22.0.1229.35"/>
    <category term="cpe:/a:google:chrome:22.0.1229.36"/>
    <category term="cpe:/a:google:chrome:22.0.1229.37"/>
    <category term="cpe:/a:google:chrome:22.0.1229.39"/>
    <category term="cpe:/a:google:chrome:22.0.1229.4"/>
    <category term="cpe:/a:google:chrome:22.0.1229.48"/>
    <category term="cpe:/a:google:chrome:22.0.1229.49"/>
    <category term="cpe:/a:google:chrome:22.0.1229.50"/>
    <category term="cpe:/a:google:chrome:22.0.1229.51"/>
    <category term="cpe:/a:google:chrome:22.0.1229.52"/>
    <category term="cpe:/a:google:chrome:22.0.1229.53"/>
    <category term="cpe:/a:google:chrome:22.0.1229.54"/>
    <category term="cpe:/a:google:chrome:22.0.1229.55"/>
    <category term="cpe:/a:google:chrome:22.0.1229.56"/>
    <category term="cpe:/a:google:chrome:22.0.1229.57"/>
    <category term="cpe:/a:google:chrome:22.0.1229.58"/>
    <category term="cpe:/a:google:chrome:22.0.1229.59"/>
    <category term="cpe:/a:google:chrome:22.0.1229.6"/>
    <category term="cpe:/a:google:chrome:22.0.1229.60"/>
    <category term="cpe:/a:google:chrome:22.0.1229.62"/>
    <category term="cpe:/a:google:chrome:22.0.1229.63"/>
    <category term="cpe:/a:google:chrome:22.0.1229.64"/>
    <category term="cpe:/a:google:chrome:22.0.1229.65"/>
    <category term="cpe:/a:google:chrome:22.0.1229.67"/>
    <category term="cpe:/a:google:chrome:22.0.1229.7"/>
    <category term="cpe:/a:google:chrome:22.0.1229.76"/>
    <category term="cpe:/a:google:chrome:22.0.1229.78"/>
    <category term="cpe:/a:google:chrome:22.0.1229.79"/>
    <category term="cpe:/a:google:chrome:22.0.1229.8"/>
    <category term="cpe:/a:google:chrome:22.0.1229.89"/>
    <category term="cpe:/a:google:chrome:22.0.1229.9"/>
    <category term="cpe:/a:google:chrome:22.0.1229.91"/>
    <category term="cpe:/a:google:chrome:22.0.1229.92 and previous versions"/>
    <sec:identifier>CVE-2012-5376</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5112:chrome: Use-after-free vulnerability in the SVG implementat...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5112_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5112_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5112_AD_1.html</id>
    <published>2012-10-11T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the SVG implementation in WebKit, as used in Google Chrome before 22.0.1229.94, allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5112_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:google:chrome:22.0.1229.0"/>
    <category term="cpe:/a:google:chrome:22.0.1229.1"/>
    <category term="cpe:/a:google:chrome:22.0.1229.10"/>
    <category term="cpe:/a:google:chrome:22.0.1229.11"/>
    <category term="cpe:/a:google:chrome:22.0.1229.12"/>
    <category term="cpe:/a:google:chrome:22.0.1229.14"/>
    <category term="cpe:/a:google:chrome:22.0.1229.16"/>
    <category term="cpe:/a:google:chrome:22.0.1229.17"/>
    <category term="cpe:/a:google:chrome:22.0.1229.18"/>
    <category term="cpe:/a:google:chrome:22.0.1229.2"/>
    <category term="cpe:/a:google:chrome:22.0.1229.20"/>
    <category term="cpe:/a:google:chrome:22.0.1229.21"/>
    <category term="cpe:/a:google:chrome:22.0.1229.22"/>
    <category term="cpe:/a:google:chrome:22.0.1229.23"/>
    <category term="cpe:/a:google:chrome:22.0.1229.24"/>
    <category term="cpe:/a:google:chrome:22.0.1229.25"/>
    <category term="cpe:/a:google:chrome:22.0.1229.26"/>
    <category term="cpe:/a:google:chrome:22.0.1229.27"/>
    <category term="cpe:/a:google:chrome:22.0.1229.28"/>
    <category term="cpe:/a:google:chrome:22.0.1229.29"/>
    <category term="cpe:/a:google:chrome:22.0.1229.3"/>
    <category term="cpe:/a:google:chrome:22.0.1229.31"/>
    <category term="cpe:/a:google:chrome:22.0.1229.32"/>
    <category term="cpe:/a:google:chrome:22.0.1229.33"/>
    <category term="cpe:/a:google:chrome:22.0.1229.35"/>
    <category term="cpe:/a:google:chrome:22.0.1229.36"/>
    <category term="cpe:/a:google:chrome:22.0.1229.37"/>
    <category term="cpe:/a:google:chrome:22.0.1229.39"/>
    <category term="cpe:/a:google:chrome:22.0.1229.4"/>
    <category term="cpe:/a:google:chrome:22.0.1229.48"/>
    <category term="cpe:/a:google:chrome:22.0.1229.49"/>
    <category term="cpe:/a:google:chrome:22.0.1229.50"/>
    <category term="cpe:/a:google:chrome:22.0.1229.51"/>
    <category term="cpe:/a:google:chrome:22.0.1229.52"/>
    <category term="cpe:/a:google:chrome:22.0.1229.53"/>
    <category term="cpe:/a:google:chrome:22.0.1229.54"/>
    <category term="cpe:/a:google:chrome:22.0.1229.55"/>
    <category term="cpe:/a:google:chrome:22.0.1229.56"/>
    <category term="cpe:/a:google:chrome:22.0.1229.57"/>
    <category term="cpe:/a:google:chrome:22.0.1229.58"/>
    <category term="cpe:/a:google:chrome:22.0.1229.59"/>
    <category term="cpe:/a:google:chrome:22.0.1229.6"/>
    <category term="cpe:/a:google:chrome:22.0.1229.60"/>
    <category term="cpe:/a:google:chrome:22.0.1229.62"/>
    <category term="cpe:/a:google:chrome:22.0.1229.63"/>
    <category term="cpe:/a:google:chrome:22.0.1229.64"/>
    <category term="cpe:/a:google:chrome:22.0.1229.65"/>
    <category term="cpe:/a:google:chrome:22.0.1229.67"/>
    <category term="cpe:/a:google:chrome:22.0.1229.7"/>
    <category term="cpe:/a:google:chrome:22.0.1229.76"/>
    <category term="cpe:/a:google:chrome:22.0.1229.78"/>
    <category term="cpe:/a:google:chrome:22.0.1229.79"/>
    <category term="cpe:/a:google:chrome:22.0.1229.8"/>
    <category term="cpe:/a:google:chrome:22.0.1229.89"/>
    <category term="cpe:/a:google:chrome:22.0.1229.9"/>
    <category term="cpe:/a:google:chrome:22.0.1229.91"/>
    <category term="cpe:/a:google:chrome:22.0.1229.92 and previous versions"/>
    <sec:identifier>CVE-2012-5112</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5166:bind: ISC BIND 9.x before 9.7.6-P4, 9.8.x before 9.8.3-P4...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5166_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5166_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5166_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
ISC BIND 9.x before 9.7.6-P4, 9.8.x before 9.8.3-P4, 9.9.x before 9.9.1-P4, and 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P4 allows remote attackers to cause a denial of service (named daemon hang) via unspecified combinations of resource records.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5166_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:isc:bind:9.0"/>
    <category term="cpe:/a:isc:bind:9.0.1"/>
    <category term="cpe:/a:isc:bind:9.1"/>
    <category term="cpe:/a:isc:bind:9.1.1"/>
    <category term="cpe:/a:isc:bind:9.1.2"/>
    <category term="cpe:/a:isc:bind:9.1.3"/>
    <category term="cpe:/a:isc:bind:9.2"/>
    <category term="cpe:/a:isc:bind:9.2.0"/>
    <category term="cpe:/a:isc:bind:9.2.1"/>
    <category term="cpe:/a:isc:bind:9.2.2"/>
    <category term="cpe:/a:isc:bind:9.2.2:p3"/>
    <category term="cpe:/a:isc:bind:9.2.3"/>
    <category term="cpe:/a:isc:bind:9.2.4"/>
    <category term="cpe:/a:isc:bind:9.2.5"/>
    <category term="cpe:/a:isc:bind:9.2.6"/>
    <category term="cpe:/a:isc:bind:9.2.7"/>
    <category term="cpe:/a:isc:bind:9.3"/>
    <category term="cpe:/a:isc:bind:9.3.0"/>
    <category term="cpe:/a:isc:bind:9.3.1"/>
    <category term="cpe:/a:isc:bind:9.3.2"/>
    <category term="cpe:/a:isc:bind:9.3.3"/>
    <category term="cpe:/a:isc:bind:9.4"/>
    <category term="cpe:/a:isc:bind:9.4-esv"/>
    <category term="cpe:/a:isc:bind:9.4.0"/>
    <category term="cpe:/a:isc:bind:9.4.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.4.0a1"/>
    <category term="cpe:/a:isc:bind:9.4.0a2"/>
    <category term="cpe:/a:isc:bind:9.4.0a3"/>
    <category term="cpe:/a:isc:bind:9.4.0a4"/>
    <category term="cpe:/a:isc:bind:9.4.0a5"/>
    <category term="cpe:/a:isc:bind:9.4.0a6"/>
    <category term="cpe:/a:isc:bind:9.4.0b1"/>
    <category term="cpe:/a:isc:bind:9.4.0b2"/>
    <category term="cpe:/a:isc:bind:9.4.0b3"/>
    <category term="cpe:/a:isc:bind:9.4.0b4"/>
    <category term="cpe:/a:isc:bind:9.4.1"/>
    <category term="cpe:/a:isc:bind:9.4.2"/>
    <category term="cpe:/a:isc:bind:9.4.3"/>
    <category term="cpe:/a:isc:bind:9.4.3:rc1"/>
    <category term="cpe:/a:isc:bind:9.4.3b1"/>
    <category term="cpe:/a:isc:bind:9.4.3b2"/>
    <category term="cpe:/a:isc:bind:9.4.3b3"/>
    <category term="cpe:/a:isc:bind:9.5"/>
    <category term="cpe:/a:isc:bind:9.5.0"/>
    <category term="cpe:/a:isc:bind:9.5.0-p1"/>
    <category term="cpe:/a:isc:bind:9.5.0-p2"/>
    <category term="cpe:/a:isc:bind:9.5.0-p2-w1"/>
    <category term="cpe:/a:isc:bind:9.5.0-p2-w2"/>
    <category term="cpe:/a:isc:bind:9.5.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.5.0a1"/>
    <category term="cpe:/a:isc:bind:9.5.0a2"/>
    <category term="cpe:/a:isc:bind:9.5.0a3"/>
    <category term="cpe:/a:isc:bind:9.5.0a4"/>
    <category term="cpe:/a:isc:bind:9.5.0a5"/>
    <category term="cpe:/a:isc:bind:9.5.0a6"/>
    <category term="cpe:/a:isc:bind:9.5.0a7"/>
    <category term="cpe:/a:isc:bind:9.5.0b1"/>
    <category term="cpe:/a:isc:bind:9.5.0b2"/>
    <category term="cpe:/a:isc:bind:9.5.0b3"/>
    <category term="cpe:/a:isc:bind:9.5.1"/>
    <category term="cpe:/a:isc:bind:9.5.1:rc1"/>
    <category term="cpe:/a:isc:bind:9.5.1:rc2"/>
    <category term="cpe:/a:isc:bind:9.5.1b1"/>
    <category term="cpe:/a:isc:bind:9.5.1b2"/>
    <category term="cpe:/a:isc:bind:9.5.1b3"/>
    <category term="cpe:/a:isc:bind:9.5.2"/>
    <category term="cpe:/a:isc:bind:9.5.2-p1"/>
    <category term="cpe:/a:isc:bind:9.5.2-p2"/>
    <category term="cpe:/a:isc:bind:9.5.2-p3"/>
    <category term="cpe:/a:isc:bind:9.5.2-p4"/>
    <category term="cpe:/a:isc:bind:9.5.2:rc1"/>
    <category term="cpe:/a:isc:bind:9.5.2b1"/>
    <category term="cpe:/a:isc:bind:9.5.3:rc1"/>
    <category term="cpe:/a:isc:bind:9.5.3b1"/>
    <category term="cpe:/a:isc:bind:9.6-esv"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r2"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r3"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r4"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r4-p1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r5"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r5:p1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r5b1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r6"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r6:b1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r6:rc1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r6:rc2"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r7"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r7:p1"/>
    <category term="cpe:/a:isc:bind:9.6-esv-r7:p2"/>
    <category term="cpe:/a:isc:bind:9.6.0"/>
    <category term="cpe:/a:isc:bind:9.6.0:p1"/>
    <category term="cpe:/a:isc:bind:9.6.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.6.0:rc2"/>
    <category term="cpe:/a:isc:bind:9.6.0a1"/>
    <category term="cpe:/a:isc:bind:9.6.0b1"/>
    <category term="cpe:/a:isc:bind:9.6.1"/>
    <category term="cpe:/a:isc:bind:9.6.1:p1"/>
    <category term="cpe:/a:isc:bind:9.6.1:p2"/>
    <category term="cpe:/a:isc:bind:9.6.1:p3"/>
    <category term="cpe:/a:isc:bind:9.6.1:rc1"/>
    <category term="cpe:/a:isc:bind:9.6.1b1"/>
    <category term="cpe:/a:isc:bind:9.6.2"/>
    <category term="cpe:/a:isc:bind:9.6.2-p1"/>
    <category term="cpe:/a:isc:bind:9.6.2-p2"/>
    <category term="cpe:/a:isc:bind:9.6.2-p3"/>
    <category term="cpe:/a:isc:bind:9.6.2:rc1"/>
    <category term="cpe:/a:isc:bind:9.6.2b1"/>
    <category term="cpe:/a:isc:bind:9.6.3"/>
    <category term="cpe:/a:isc:bind:9.6.3:rc1"/>
    <category term="cpe:/a:isc:bind:9.6.3b1"/>
    <category term="cpe:/a:isc:bind:9.7.0"/>
    <category term="cpe:/a:isc:bind:9.7.0:beta"/>
    <category term="cpe:/a:isc:bind:9.7.0:p1"/>
    <category term="cpe:/a:isc:bind:9.7.0:p2"/>
    <category term="cpe:/a:isc:bind:9.7.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.0:rc2"/>
    <category term="cpe:/a:isc:bind:9.7.0a1"/>
    <category term="cpe:/a:isc:bind:9.7.0a2"/>
    <category term="cpe:/a:isc:bind:9.7.0a3"/>
    <category term="cpe:/a:isc:bind:9.7.0b1"/>
    <category term="cpe:/a:isc:bind:9.7.0b2"/>
    <category term="cpe:/a:isc:bind:9.7.0b3"/>
    <category term="cpe:/a:isc:bind:9.7.1"/>
    <category term="cpe:/a:isc:bind:9.7.1:p1"/>
    <category term="cpe:/a:isc:bind:9.7.1:p2"/>
    <category term="cpe:/a:isc:bind:9.7.1:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.1b1"/>
    <category term="cpe:/a:isc:bind:9.7.2"/>
    <category term="cpe:/a:isc:bind:9.7.2:p1"/>
    <category term="cpe:/a:isc:bind:9.7.2:p2"/>
    <category term="cpe:/a:isc:bind:9.7.2:p3"/>
    <category term="cpe:/a:isc:bind:9.7.2:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.3"/>
    <category term="cpe:/a:isc:bind:9.7.3:b1"/>
    <category term="cpe:/a:isc:bind:9.7.3:p1"/>
    <category term="cpe:/a:isc:bind:9.7.3:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.4"/>
    <category term="cpe:/a:isc:bind:9.7.4:b1"/>
    <category term="cpe:/a:isc:bind:9.7.4:p1"/>
    <category term="cpe:/a:isc:bind:9.7.4:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.4b1"/>
    <category term="cpe:/a:isc:bind:9.7.5"/>
    <category term="cpe:/a:isc:bind:9.7.5:b1"/>
    <category term="cpe:/a:isc:bind:9.7.5:rc1"/>
    <category term="cpe:/a:isc:bind:9.7.5:rc2"/>
    <category term="cpe:/a:isc:bind:9.7.6"/>
    <category term="cpe:/a:isc:bind:9.7.6:p1"/>
    <category term="cpe:/a:isc:bind:9.7.6:p2"/>
    <category term="cpe:/a:isc:bind:9.7.6:p3"/>
    <category term="cpe:/a:isc:bind:9.8.0"/>
    <category term="cpe:/a:isc:bind:9.8.0:a1"/>
    <category term="cpe:/a:isc:bind:9.8.0:b1"/>
    <category term="cpe:/a:isc:bind:9.8.0:p1"/>
    <category term="cpe:/a:isc:bind:9.8.0:p2"/>
    <category term="cpe:/a:isc:bind:9.8.0:p4"/>
    <category term="cpe:/a:isc:bind:9.8.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.8.1"/>
    <category term="cpe:/a:isc:bind:9.8.1:b1"/>
    <category term="cpe:/a:isc:bind:9.8.1:b2"/>
    <category term="cpe:/a:isc:bind:9.8.1:b3"/>
    <category term="cpe:/a:isc:bind:9.8.1:p1"/>
    <category term="cpe:/a:isc:bind:9.8.1:rc1"/>
    <category term="cpe:/a:isc:bind:9.8.2:b1"/>
    <category term="cpe:/a:isc:bind:9.8.2:rc1"/>
    <category term="cpe:/a:isc:bind:9.8.2:rc2"/>
    <category term="cpe:/a:isc:bind:9.8.3"/>
    <category term="cpe:/a:isc:bind:9.8.3:p1"/>
    <category term="cpe:/a:isc:bind:9.8.3:p2"/>
    <category term="cpe:/a:isc:bind:9.8.3:p3"/>
    <category term="cpe:/a:isc:bind:9.9.0"/>
    <category term="cpe:/a:isc:bind:9.9.0:a1"/>
    <category term="cpe:/a:isc:bind:9.9.0:a2"/>
    <category term="cpe:/a:isc:bind:9.9.0:a3"/>
    <category term="cpe:/a:isc:bind:9.9.0:b1"/>
    <category term="cpe:/a:isc:bind:9.9.0:b2"/>
    <category term="cpe:/a:isc:bind:9.9.0:rc1"/>
    <category term="cpe:/a:isc:bind:9.9.0:rc2"/>
    <category term="cpe:/a:isc:bind:9.9.0:rc3"/>
    <category term="cpe:/a:isc:bind:9.9.0:rc4"/>
    <category term="cpe:/a:isc:bind:9.9.1"/>
    <category term="cpe:/a:isc:bind:9.9.1:p1"/>
    <category term="cpe:/a:isc:bind:9.9.1:p2"/>
    <category term="cpe:/a:isc:bind:9.9.1:p3"/>
    <sec:identifier>CVE-2012-5166</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4467:linux_kernel: The (1) do_siocgstamp and (2) do_siocgstampns funct...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4467_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4467_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4467_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allows local users to obtain sensitive information from kernel memory or cause a denial of service (system crash) via a crafted ioctl call.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4467_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/o:linux:linux_kernel:3.0.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.31"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.32"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.33"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.34"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.35"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.36"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.37"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.38"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.39"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.40"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.41"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.42"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.43"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.44"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.0.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.0:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.1.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.1:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.14"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.15"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.16"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.17"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.18"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.19"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.20"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.21"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.22"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.23"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.24"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.25"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.26"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.27"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.28"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.29"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.30"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.2.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.2:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.3.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.3:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.10"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.11"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.12"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.13"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.7"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.8"/>
    <category term="cpe:/o:linux:linux_kernel:3.4.9"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc1"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc2"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc3"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc4"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc5"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc6"/>
    <category term="cpe:/o:linux:linux_kernel:3.4:rc7"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.1"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.2"/>
    <category term="cpe:/o:linux:linux_kernel:3.5.3 and previous versions"/>
    <sec:identifier>CVE-2012-4467</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-2286:rsa_adaptive_authentication_on-premise: Unspecified vulnerability in EMC RSA Adaptive Authe...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2286_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2286_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2286_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Unspecified vulnerability in EMC RSA Adaptive Authentication On-Premise (AAOP) 6.0.2.1 before SP3 P3 allows remote attackers to obtain sensitive information via unknown vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-2286_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:2.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:5.7.3"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp1_patch2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp1_patch3"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp2"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp2_patch1"/>
    <category term="cpe:/a:emc:rsa_adaptive_authentication_on-premise:6.0.2.1:sp3 and previous versions"/>
    <sec:identifier>CVE-2012-2286</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5356:ubuntu_software_properties: The apt-add-repository tool in Ubuntu Software Prop...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5356_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5356_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5356_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The apt-add-repository tool in Ubuntu Software Properties 0.75.x before 0.75.10.3, 0.80.x before 0.80.9.2, 0.81.x before 0.81.13.5, 0.82.x before 0.82.7.3, and 0.92.x before 0.92.8 does not properly check PPA GPG keys imported from a keyserver, which allows remote attackers to install arbitrary package repository GPG keys via a man-in-the-middle (MITM) attack.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5356_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.10"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.10.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.10.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.5"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.6"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.7"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.8"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.75.9"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.76.7"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.77"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.78"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.78.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.10"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.11"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.12"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.13"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.3"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.5"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.6"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.7"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.8"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.9"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.80.9.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.10"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.11"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.13"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.13.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.13.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.13.3"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.13.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.3"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.5"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.6"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.7"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.8"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.81.9"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.3"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.5"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.6"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.7"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.7.1"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.82.7.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.83"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.84"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.85"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.86"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.87"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.88"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.89"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.90"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.91"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.2"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.3"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.4"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.5"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.6"/>
    <category term="cpe:/a:canonical:ubuntu_software_properties:0.92.7"/>
    <sec:identifier>CVE-2012-5356</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5355:xdiagnose: welcome.py in xdiagnose before 2.5.2ubuntu0.1 allow...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5355_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5355_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5355_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
welcome.py in xdiagnose before 2.5.2ubuntu0.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5355_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bryce_harrington:xdiagnose:0.2-0ubuntu2"/>
    <category term="cpe:/a:bryce_harrington:xdiagnose:1.6"/>
    <category term="cpe:/a:bryce_harrington:xdiagnose:1.6.1"/>
    <category term="cpe:/a:bryce_harrington:xdiagnose:2.5 and previous versions"/>
    <sec:identifier>CVE-2012-5355</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4899:kingview: WellinTech KingView 6.5.3 and earlier uses a weak p...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4899_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4899_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4899_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
WellinTech KingView 6.5.3 and earlier uses a weak password-hashing algorithm, which makes it easier for local users to discover credentials by reading an unspecified file.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4899_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:wellintech:kingview:3.0"/>
    <category term="cpe:/a:wellintech:kingview:6.5.30.2010.18018"/>
    <category term="cpe:/a:wellintech:kingview:6.52"/>
    <category term="cpe:/a:wellintech:kingview:6.53 and previous versions"/>
    <category term="cpe:/a:wellintech:kingview:65.30.17249"/>
    <category term="cpe:/a:wellintech:kingview:65.30.2010.18018"/>
    <sec:identifier>CVE-2012-4899</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4465:cgit: Heap-based buffer overflow in the substr function i...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4465_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4465_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4465_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the substr function in parsing.c in cgit 0.9.0.3 and earlier allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via an empty username in the &quot;Author&quot; field in a commit.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4465_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:lars_hjemli:cgit:0.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.4"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.5"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.6.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.7.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.1.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.2.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.3"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.4"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.8.3.5"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.1"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.2"/>
    <category term="cpe:/a:lars_hjemli:cgit:0.9.0.3 and previous versions"/>
    <sec:identifier>CVE-2012-4465</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4463:midnight_commander: Midnight Commander (mc) 4.8.5 does not properly han...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4463_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4463_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4463_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Midnight Commander (mc) 4.8.5 does not properly handle the (1) MC_EXT_SELECTED or (2) MC_EXT_ONLYTAGGED environment variables when multiple files are selected, which allows user-assisted remote attackers to execute arbitrary commands via a crafted file name.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4463_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:midnight-commander:midnight_commander:4.8.5"/>
    <sec:identifier>CVE-2012-4463</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4455:opencryptoki: openCryptoki 2.4.1 allows local users to create or ...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4455_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4455_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4455_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) LCK..opencryptoki or (2) LCK..opencryptoki_stdll file in /var/lock/.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4455_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.4.1"/>
    <sec:identifier>CVE-2012-4455</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4454:opencryptoki: openCryptoki before 2.4.1, when using spinlocks, al...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4454_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4454_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4454_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
openCryptoki before 2.4.1, when using spinlocks, allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) .pkapi_xpk or (2) .pkcs11spinloc file in /tmp.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4454_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.3"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.4"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.4.1"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.5"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.6"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.7"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.2.8"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.3.0"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.3.1"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.3.2"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.3.3"/>
    <category term="cpe:/a:opencryptoki_project:opencryptoki:2.4 and previous versions"/>
    <sec:identifier>CVE-2012-4454</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4445:hostapd: Heap-based buffer overflow in the eap_server_tls_pr...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4445_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4445_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4445_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the eap_server_tls_process_fragment function in eap_server_tls_common.c in the EAP authentication server in hostapd 0.6 through 1.0 allows remote attackers to cause a denial of service (crash or abort) via a small &quot;TLS Message Length&quot; value in an EAP-TLS message with the &quot;More Fragments&quot; flag set.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4445_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:w1.fi:hostapd:0.6.0"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.1"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.2"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.3"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.4"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.5"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.6"/>
    <category term="cpe:/a:w1.fi:hostapd:0.6.7"/>
    <category term="cpe:/a:w1.fi:hostapd:0.7.0"/>
    <category term="cpe:/a:w1.fi:hostapd:0.7.1"/>
    <category term="cpe:/a:w1.fi:hostapd:0.7.2"/>
    <category term="cpe:/a:w1.fi:hostapd:0.7.3"/>
    <category term="cpe:/a:w1.fi:hostapd:1.0"/>
    <sec:identifier>CVE-2012-4445</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4430:bacula: The dump_resource function in dird/dird_conf.c in B...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4430_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4430_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4430_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The dump_resource function in dird/dird_conf.c in Bacula before 5.2.11 does not properly enforce ACL rules, which allows remote authenticated users to obtain resource dump information via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4430_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:bacula:bacula:5.2.10 and previous versions"/>
    <category term="cpe:/a:bacula:bacula:5.2.7"/>
    <category term="cpe:/a:bacula:bacula:5.2.8"/>
    <sec:identifier>CVE-2012-4430</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3504:crypto-utils: The nssconfigFound function in genkey.pl in crypto-...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3504_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3504_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3504_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The nssconfigFound function in genkey.pl in crypto-utils 2.4.1-34 allows local users to overwrite arbitrary files via a symlink attack on the &quot;list&quot; file in the current working directory.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3504_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:fedoraproject:crypto-utils:2.4.1-34"/>
    <sec:identifier>CVE-2012-3504</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-3040:simatic_s7-1200_plc: Cross-site scripting (XSS) vulnerability in the web...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3040_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3040_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3040_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Cross-site scripting (XSS) vulnerability in the web server on Siemens SIMATIC S7-1200 PLCs 2.x through 3.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-3040_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc:2.0"/>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc:2.1"/>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc:2.2"/>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc:3.0.0"/>
    <category term="cpe:/h:siemens:simatic_s7-1200_plc:3.0.1"/>
    <sec:identifier>CVE-2012-3040</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2009-5067:html2ps: Directory traversal vulnerability in html2ps before...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-5067_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-5067_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-5067_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Directory traversal vulnerability in html2ps before 1.0b6 allows remote attackers to read arbitrary files via a .. (dot dot) in the &quot;include file&quot; SSI directive.  NOTE: this issue only might be a vulnerability in limited scenarios, such as if html2ps is invoked by a web application, or if a user-assisted attacker provides filenames whose contents could cause a denial of service, such as certain devices.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2009-5067_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:html2ps_project:html2ps:1.0:b1"/>
    <category term="cpe:/a:html2ps_project:html2ps:1.0:b2"/>
    <category term="cpe:/a:html2ps_project:html2ps:1.0:b3"/>
    <category term="cpe:/a:html2ps_project:html2ps:1.0:b4"/>
    <category term="cpe:/a:html2ps_project:html2ps:1.0:b5 and previous versions"/>
    <sec:identifier>CVE-2009-5067</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-5354:firefox, thunderbird, seamonkey: Mozilla Firefox before 16.0, Thunderbird before 16....</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5354_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5354_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5354_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has multiple menus of SELECT elements active, which allows remote attackers to conduct clickjacking attacks via vectors involving an XPI file, the window.open method, and the Geolocation API, a different vulnerability than CVE-2012-3984.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-5354_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <sec:identifier>CVE-2012-5354</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4188:firefox_esr, thunderbird_esr, seamonkey: Heap-based buffer overflow in the Convolve3x3 funct...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4188_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4188_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4188_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4188_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4188</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4187:firefox_esr, thunderbird_esr, seamonkey: Mozilla Firefox before 16.0, Firefox ESR 10.x befor...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4187_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4187_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4187_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly manage a certain insPos variable, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and assertion failure) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4187_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4187</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4186:firefox_esr, thunderbird_esr, seamonkey: Heap-based buffer overflow in the nsWaveReader::Dec...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4186_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4186_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4186_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4186_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4186</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4185:firefox_esr, thunderbird_esr, seamonkey: Buffer overflow in the nsCharTraits::length functio...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4185_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4185_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4185_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Buffer overflow in the nsCharTraits::length function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4185_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4185</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4184:firefox_esr, thunderbird_esr, seamonkey: The Chrome Object Wrapper (COW) implementation in M...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4184_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4184_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4184_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 does not prevent access to properties of a prototype for a standard class, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted web site.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4184_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4184</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4183:firefox_esr, thunderbird_esr, seamonkey: Use-after-free vulnerability in the DOMSVGTests::Ge...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4183_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4183_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4183_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the DOMSVGTests::GetRequiredFeatures function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4183_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4183</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4182:firefox_esr, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsTextEditRules...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4182_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4182_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4182_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsTextEditRules::WillInsert function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4182_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4182</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4181:firefox_esr, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsSMILAnimation...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4181_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4181_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4181_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsSMILAnimationController::DoSample function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4181_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4181</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4180:firefox_esr, thunderbird_esr, seamonkey: Heap-based buffer overflow in the nsHTMLEditor::IsP...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4180_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4180_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4180_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Heap-based buffer overflow in the nsHTMLEditor::IsPrevCharInNodeWhitespace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4180_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5:beta2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.7.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0"/>
    <category term="cpe:/a:mozilla:thunderbird:11.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0"/>
    <category term="cpe:/a:mozilla:thunderbird:12.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0"/>
    <category term="cpe:/a:mozilla:thunderbird:13.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:14.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0"/>
    <category term="cpe:/a:mozilla:thunderbird:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.0"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.15"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.16"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.17"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.18"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.19"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.20"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.21"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.22"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.23"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:2.0.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.0.9"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.1"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.10"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.11"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.12"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.13"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.14"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.15"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.16"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.17"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.2"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.3"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.4"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.6"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.7"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.8"/>
    <category term="cpe:/a:mozilla:thunderbird:3.1.9"/>
    <category term="cpe:/a:mozilla:thunderbird:5.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:6.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0"/>
    <category term="cpe:/a:mozilla:thunderbird:7.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:8.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0"/>
    <category term="cpe:/a:mozilla:thunderbird:9.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird_esr:10.0.7"/>
    <sec:identifier>CVE-2012-4180</sec:identifier>
    <vrda:latestrevisionno>1</vrda:latestrevisionno>
    <vrda:analysisinformationsourcetype>Advisory</vrda:analysisinformationsourcetype>
    <vrda:revisionno>1</vrda:revisionno>
    <vrda:invalidated>false</vrda:invalidated>
  </entry>
  <entry>
    <title>CVE-2012-4179:firefox_esr, thunderbird_esr, seamonkey: Use-after-free vulnerability in the nsHTMLCSSUtils:...</title>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4179_AD_1.html" rel="alternate" type="text/html"/>
    <link href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4179_AD_1.xml" rel="alternate" type="application/xml"/>
    <id>http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4179_AD_1.html</id>
    <published>2012-10-10T00:00:00+09:00</published>
    <updated>2012-10-11T00:00:00+09:00</updated>
    <author>
      <name>NIST NVD</name>
    </author>
    <content type="html">
Use-after-free vulnerability in the nsHTMLCSSUtils::CreateCSSPropertyTxn function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.&lt;br&gt;&lt;br&gt;&lt;a href="http://vrda.jpcert.or.jp/feed/ja/NISTNVD_CVE-2012-4179_AD_1.html" target="_self"&gt;Vulnerability Analysis Summary&lt;/a&gt;&lt;br&gt;Analysis Information Source Type : Advisory, Alert    </content>
    <category term="cpe:/a:mozilla:firefox:1.0"/>
    <category term="cpe:/a:mozilla:firefox:1.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.0:preview_release"/>
    <category term="cpe:/a:mozilla:firefox:1.4.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.10"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.11"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.12"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5.0.9"/>
    <category term="cpe:/a:mozilla:firefox:1.5.1"/>
    <category term="cpe:/a:mozilla:firefox:1.5.2"/>
    <category term="cpe:/a:mozilla:firefox:1.5.3"/>
    <category term="cpe:/a:mozilla:firefox:1.5.4"/>
    <category term="cpe:/a:mozilla:firefox:1.5.5"/>
    <category term="cpe:/a:mozilla:firefox:1.5.6"/>
    <category term="cpe:/a:mozilla:firefox:1.5.7"/>
    <category term="cpe:/a:mozilla:firefox:1.5.8"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta1"/>
    <category term="cpe:/a:mozilla:firefox:1.5:beta2"/>
    <category term="cpe:/a:mozilla:firefox:1.8"/>
    <category term="cpe:/a:mozilla:firefox:10.0"/>
    <category term="cpe:/a:mozilla:firefox:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox:11.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0"/>
    <category term="cpe:/a:mozilla:firefox:12.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:13.0"/>
    <category term="cpe:/a:mozilla:firefox:13.0.1"/>
    <category term="cpe:/a:mozilla:firefox:14.0"/>
    <category term="cpe:/a:mozilla:firefox:14.0.1"/>
    <category term="cpe:/a:mozilla:firefox:15.0"/>
    <category term="cpe:/a:mozilla:firefox:15.0.1 and previous versions"/>
    <category term="cpe:/a:mozilla:firefox:2.0"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.1"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.10"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.11"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.12"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.13"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.14"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.15"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.16"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.17"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.18"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.19"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.2"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.20"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.3"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.4"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.5"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.6"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.7"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.8"/>
    <category term="cpe:/a:mozilla:firefox:2.0.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.0"/>
    <category term="cpe:/a:mozilla:firefox:3.0.1"/>
    <category term="cpe:/a:mozilla:firefox:3.0.10"/>
    <category term="cpe:/a:mozilla:firefox:3.0.11"/>
    <category term="cpe:/a:mozilla:firefox:3.0.12"/>
    <category term="cpe:/a:mozilla:firefox:3.0.13"/>
    <category term="cpe:/a:mozilla:firefox:3.0.14"/>
    <category term="cpe:/a:mozilla:firefox:3.0.15"/>
    <category term="cpe:/a:mozilla:firefox:3.0.16"/>
    <category term="cpe:/a:mozilla:firefox:3.0.17"/>
    <category term="cpe:/a:mozilla:firefox:3.0.2"/>
    <category term="cpe:/a:mozilla:firefox:3.0.3"/>
    <category term="cpe:/a:mozilla:firefox:3.0.4"/>
    <category term="cpe:/a:mozilla:firefox:3.0.5"/>
    <category term="cpe:/a:mozilla:firefox:3.0.6"/>
    <category term="cpe:/a:mozilla:firefox:3.0.7"/>
    <category term="cpe:/a:mozilla:firefox:3.0.8"/>
    <category term="cpe:/a:mozilla:firefox:3.0.9"/>
    <category term="cpe:/a:mozilla:firefox:3.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.1"/>
    <category term="cpe:/a:mozilla:firefox:3.5.10"/>
    <category term="cpe:/a:mozilla:firefox:3.5.11"/>
    <category term="cpe:/a:mozilla:firefox:3.5.12"/>
    <category term="cpe:/a:mozilla:firefox:3.5.13"/>
    <category term="cpe:/a:mozilla:firefox:3.5.14"/>
    <category term="cpe:/a:mozilla:firefox:3.5.15"/>
    <category term="cpe:/a:mozilla:firefox:3.5.2"/>
    <category term="cpe:/a:mozilla:firefox:3.5.3"/>
    <category term="cpe:/a:mozilla:firefox:3.5.4"/>
    <category term="cpe:/a:mozilla:firefox:3.5.5"/>
    <category term="cpe:/a:mozilla:firefox:3.5.6"/>
    <category term="cpe:/a:mozilla:firefox:3.5.7"/>
    <category term="cpe:/a:mozilla:firefox:3.5.8"/>
    <category term="cpe:/a:mozilla:firefox:3.5.9"/>
    <category term="cpe:/a:mozilla:firefox:3.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.10"/>
    <category term="cpe:/a:mozilla:firefox:3.6.11"/>
    <category term="cpe:/a:mozilla:firefox:3.6.12"/>
    <category term="cpe:/a:mozilla:firefox:3.6.13"/>
    <category term="cpe:/a:mozilla:firefox:3.6.14"/>
    <category term="cpe:/a:mozilla:firefox:3.6.15"/>
    <category term="cpe:/a:mozilla:firefox:3.6.16"/>
    <category term="cpe:/a:mozilla:firefox:3.6.17"/>
    <category term="cpe:/a:mozilla:firefox:3.6.18"/>
    <category term="cpe:/a:mozilla:firefox:3.6.19"/>
    <category term="cpe:/a:mozilla:firefox:3.6.2"/>
    <category term="cpe:/a:mozilla:firefox:3.6.20"/>
    <category term="cpe:/a:mozilla:firefox:3.6.21"/>
    <category term="cpe:/a:mozilla:firefox:3.6.22"/>
    <category term="cpe:/a:mozilla:firefox:3.6.23"/>
    <category term="cpe:/a:mozilla:firefox:3.6.24"/>
    <category term="cpe:/a:mozilla:firefox:3.6.25"/>
    <category term="cpe:/a:mozilla:firefox:3.6.3"/>
    <category term="cpe:/a:mozilla:firefox:3.6.4"/>
    <category term="cpe:/a:mozilla:firefox:3.6.6"/>
    <category term="cpe:/a:mozilla:firefox:3.6.7"/>
    <category term="cpe:/a:mozilla:firefox:3.6.8"/>
    <category term="cpe:/a:mozilla:firefox:3.6.9"/>
    <category term="cpe:/a:mozilla:firefox:4.0"/>
    <category term="cpe:/a:mozilla:firefox:4.0.1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta1"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta10"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta11"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta12"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta2"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta3"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta4"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta5"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta6"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta7"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta8"/>
    <category term="cpe:/a:mozilla:firefox:4.0:beta9"/>
    <category term="cpe:/a:mozilla:firefox:5.0"/>
    <category term="cpe:/a:mozilla:firefox:5.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0"/>
    <category term="cpe:/a:mozilla:firefox:6.0.1"/>
    <category term="cpe:/a:mozilla:firefox:6.0.2"/>
    <category term="cpe:/a:mozilla:firefox:7.0"/>
    <category term="cpe:/a:mozilla:firefox:7.0.1"/>
    <category term="cpe:/a:mozilla:firefox:8.0"/>
    <category term="cpe:/a:mozilla:firefox:8.0.1"/>
    <category term="cpe:/a:mozilla:firefox:9.0"/>
    <category term="cpe:/a:mozilla:firefox:9.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.1"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.2"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.3"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.4"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.5"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.6"/>
    <category term="cpe:/a:mozilla:firefox_esr:10.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.13"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.14"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:alpha_3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:beta_2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.0:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.10:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.11:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.12:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.13:beta6 and previous versions"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:alpha3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.1:rc2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.2:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3.3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.3:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.4:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.5:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.6:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7.2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.7:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta4"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta5"/>
    <category term="cpe:/a:mozilla:seamonkey:2.8:beta6"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9.1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta1"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta2"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta3"/>
    <category term="cpe:/a:mozilla:seamonkey:2.9:beta4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.5:beta"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.1"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.10"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.11"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.12"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.13"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.14"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.2"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.3"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.4"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.5"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.6"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.7"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.8"/>
    <category term="cpe:/a:mozilla:thunderbird:1.5.0.9"/>
    <cat