CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55049  CVE-2012-1806  Candidate  The ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 supports a maximum password length of 8 bytes, which makes it easier for remote attackers to obtain access via a brute-force attack.  Assigned (20120321)  None (candidate not yet proposed)    View
55305  CVE-2012-2062  Candidate  Open redirect vulnerability in the Redirecting click bouncer module for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View
55561  CVE-2012-2318  Candidate  msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 does not properly handle crafted characters, which allows remote servers to cause a denial of service (application crash) by placing these characters in a text/plain message.  Assigned (20120419)  None (candidate not yet proposed)    View
55817  CVE-2012-2574  Candidate  SQL injection vulnerability in the management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to a "blind SQL injection" issue.  Assigned (20120509)  None (candidate not yet proposed)    View
56073  CVE-2012-2830  Candidate  Google Chrome before 20.0.1132.43 does not properly set array values, which allows remote attackers to cause a denial of service (incorrect pointer use) or possibly have unspecified other impact via unknown vectors.  Assigned (20120519)  None (candidate not yet proposed)    View

Page 1402 of 20943, showing 5 records out of 104715 total, starting on record 7006, ending on 7010

Actions