CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57869  CVE-2012-4626  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120824)  None (candidate not yet proposed)    View
58125  CVE-2012-4882  Candidate  Multiple untrusted search path vulnerabilities in 3D XML Player 6.212.13.12076 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) JT0DevPhase.dll file in the current working directory, as demonstrated by a directory that contains a .3dx file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
58381  CVE-2012-5138  Candidate  Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58637  CVE-2012-5394  Candidate  Cross-site request forgery (CSRF) vulnerability in the CentralAuth extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to hijack the authentication of users for requests that login via vectors involving image loading.  Assigned (20121017)  None (candidate not yet proposed)    View
58893  CVE-2012-5650  Candidate  Cross-site scripting (XSS) vulnerability in the Futon UI in Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the browser-based test suite.  Assigned (20121024)  None (candidate not yet proposed)    View

Page 1123 of 20943, showing 5 records out of 104715 total, starting on record 5611, ending on 5615

Actions