CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58381  CVE-2012-5138  Candidate  Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58637  CVE-2012-5394  Candidate  Cross-site request forgery (CSRF) vulnerability in the CentralAuth extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to hijack the authentication of users for requests that login via vectors involving image loading.  Assigned (20121017)  None (candidate not yet proposed)    View
58893  CVE-2012-5650  Candidate  Cross-site scripting (XSS) vulnerability in the Futon UI in Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the browser-based test suite.  Assigned (20121024)  None (candidate not yet proposed)    View
59149  CVE-2012-5906  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in GreenBrowser 6.1.0117 and 6.1.0216 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in an about: page or (2) the last visited URL in the LastVisitWriteEn function in function.js.  Assigned (20121117)  None (candidate not yet proposed)    View
59405  CVE-2012-6162  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 1111 of 20943, showing 5 records out of 104715 total, starting on record 5551, ending on 5555

Actions