CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
57869 | CVE-2012-4626 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20120824) | None (candidate not yet proposed) | View | |
58125 | CVE-2012-4882 | Candidate | Multiple untrusted search path vulnerabilities in 3D XML Player 6.212.13.12076 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) JT0DevPhase.dll file in the current working directory, as demonstrated by a directory that contains a .3dx file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20120907) | None (candidate not yet proposed) | View | |
58381 | CVE-2012-5138 | Candidate | Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors. | Assigned (20120924) | None (candidate not yet proposed) | View | |
58637 | CVE-2012-5394 | Candidate | Cross-site request forgery (CSRF) vulnerability in the CentralAuth extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to hijack the authentication of users for requests that login via vectors involving image loading. | Assigned (20121017) | None (candidate not yet proposed) | View | |
58893 | CVE-2012-5650 | Candidate | Cross-site scripting (XSS) vulnerability in the Futon UI in Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the browser-based test suite. | Assigned (20121024) | None (candidate not yet proposed) | View |
Page 1123 of 20943, showing 5 records out of 104715 total, starting on record 5611, ending on 5615