Ocean12 Technologies
ocean12_technologies
14 CVEs • 6 products
Products (6)
Click to collapseToggle
Products (6)
Click to collapse
CVEs (14)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ocean12 Technologies 1Mailing List Manager Apr 23, 2026 Jan 27, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for o12mail.mdb. |
1Ocean12 Technologies 1Mailing List Manager Apr 23, 2026 Jan 27, 2009 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Mailing List Manager Gold allows remote attackers to inject arbitrary web script or HTML via the Email parameter. |
1Ocean12 Technologies 1Mailing List Manager Apr 23, 2026 Jan 27, 2009 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple SQL injection vulnerabilities in Ocean12 Mailing List Manager Gold allow remote attackers to execute arbitrary SQL commands via the Email parameter to (1) default.asp and (2) s_edit.asp. |
1Ocean12 Technologies 1Calendar Manager Apr 23, 2026 Nov 18, 2008 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Ocean12 Calendar Manager Gold 2.04 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12cal.mdb. |
Ocean12 Poll Manager Pro 1.00 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12poll.mdb. |
1Ocean12 Technologies 1Membership Manager Pro Apr 23, 2026 Nov 18, 2008 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Ocean12 Membership Manager Pro stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12member.mdb. |
1Ocean12 Technologies 1Contact Manager Apr 23, 2026 Nov 18, 2008 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Ocean12 Contact Manager Pro 1.02 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12con.mdb. |
1Ocean12 Technologies 1Calendar Manager Pro Apr 16, 2026 May 9, 2006 N/A· v4 N/A· v3 2.6 LOW· v2 Cross-site scripting vulnerability in admin/main.asp in Ocean12 Calendar Manager Pro 1.00 allows remote attackers to inject arbitrary web script or HTML via the date parameter. NOTE: the provenance of this information i...Show more |
1Ocean12 Technologies 1Calendar Manager Pro Apr 16, 2026 May 9, 2006 N/A· v4 N/A· v3 6.5 MEDIUM· v2 Multiple SQL injection vulnerabilities in Ocean12 Calendar Manager Pro 1.00 allow remote attackers to execute arbitrary SQL commands via the (1) date parameter to admin/main.asp, (2) SearchFor parameter to admin/view.asp...Show more |
1Ocean12 Technologies 1Calendar Manager Pro Apr 16, 2026 Dec 31, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Ocean12 Calendar Manager Pro 1.01 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to /admin/view.asp. NOTE: the provenance of this information is unknown; the detai...Show more |
1Ocean12 Technologies 1Mailing List Manager Apr 16, 2026 May 3, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 SQL injection vulnerability in the admin login panel for Ocean12 Mailing List Manager 1.06 allows remote attackers to execute arbitrary SQL commands via the Admin_id parameter. |
1Ocean12 Technologies 1Calendar Manager Pro Apr 16, 2026 May 2, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple SQL injection vulnerabilities in Ocean12 Calendar manager 1.01 allow remote attackers to execute arbitrary SQL commands via the Admin_id field. |
1Ocean12 Technologies 1Membership Manager Pro Apr 16, 2026 May 2, 2005 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to inject arbitrary web script or HTML via the page parameter. |
1Ocean12 Technologies 1Membership Manager Pro Apr 16, 2026 Apr 6, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitrary SQL commands via the UserID parameter. |