CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54282  CVE-2012-1039  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Dotclear before 2.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) login_data parameter to admin/auth.php; (2) nb parameter to admin/blogs.php; (3) type, (4) sortby, (5) order, or (6) status parameters to admin/comments.php; or (7) page parameter to admin/plugin.php.  Assigned (20120209)  None (candidate not yet proposed)    View
54538  CVE-2012-1295  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120223)  None (candidate not yet proposed)    View
54794  CVE-2012-1551  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120309)  None (candidate not yet proposed)    View
55050  CVE-2012-1807  Candidate  Cross-site scripting (XSS) vulnerability in the web server in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120321)  None (candidate not yet proposed)    View
55306  CVE-2012-2063  Candidate  The Slidebox module before 7.x-1.4 for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View

Page 1481 of 20943, showing 5 records out of 104715 total, starting on record 7401, ending on 7405

Actions