CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59150  CVE-2012-5907  Candidate  Directory traversal vulnerability in json.php in TomatoCart 1.2.0 Alpha 2 and possibly earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter in a "3" action.  Assigned (20121117)  None (candidate not yet proposed)    View
59406  CVE-2012-6163  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121206)  None (candidate not yet proposed)    View
59662  CVE-2012-6419  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121216)  None (candidate not yet proposed)    View
59918  CVE-2012-6675  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141120)  None (candidate not yet proposed)    View
60174  CVE-2013-0227  Candidate  Cross-site scripting (XSS) vulnerability in the Search API Sorts module 7.x-1.x before 7.x-1.4 for Drupal allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified field labels.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 1204 of 20943, showing 5 records out of 104715 total, starting on record 6016, ending on 6020

Actions