CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52753  CVE-2011-4841  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111215)  None (candidate not yet proposed)    View
53009  CVE-2011-5097  Candidate  chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.  Assigned (20120808)  None (candidate not yet proposed)    View
53265  CVE-2012-0022  Candidate  Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters and parameter values, a different vulnerability than CVE-2011-4858.  Assigned (20111207)  None (candidate not yet proposed)    View
53521  CVE-2012-0278  Candidate  Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.  Assigned (20111230)  None (candidate not yet proposed)    View
53777  CVE-2012-0534  Candidate  Unspecified vulnerability in the RDBMS Core component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity via unknown vectors related to Create Session.  Assigned (20120111)  None (candidate not yet proposed)    View

Page 1414 of 20943, showing 5 records out of 104715 total, starting on record 7066, ending on 7070

Actions