CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52749  CVE-2011-4837  Candidate  Cross-site request forgery (CSRF) vulnerability in /ctrl in the web interface in HomeSeer HS2 2.5.0.20 allows remote attackers to hijack the authentication of admins for requests that execute arbitrary programs.  Assigned (20111214)  None (candidate not yet proposed)    View
53005  CVE-2011-5093  Candidate  Best Practical Solutions RT 4.x before 4.0.6 does not properly implement the DisallowExecuteCode option, which allows remote authenticated users to bypass intended access restrictions and execute arbitrary code by leveraging access to a privileged account, a different vulnerability than CVE-2011-4458 and CVE-2011-5092.  Assigned (20120604)  None (candidate not yet proposed)    View
53261  CVE-2012-0018  Candidate  Microsoft Visio Viewer 2010 Gold and SP1 does not properly validate attributes in Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka "VSD File Format Memory Corruption Vulnerability."  Assigned (20111109)  None (candidate not yet proposed)    View
53517  CVE-2012-0274  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111230)  None (candidate not yet proposed)    View
53773  CVE-2012-0530  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise SCM component in Oracle PeopleSoft Products 9.0 and 9.1 allows remote authenticated users to affect integrity via unknown vectors related to eProcurement.  Assigned (20120111)  None (candidate not yet proposed)    View

Page 1119 of 20943, showing 5 records out of 104715 total, starting on record 5591, ending on 5595

Actions