CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
54282 | CVE-2012-1039 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Dotclear before 2.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) login_data parameter to admin/auth.php; (2) nb parameter to admin/blogs.php; (3) type, (4) sortby, (5) order, or (6) status parameters to admin/comments.php; or (7) page parameter to admin/plugin.php. | Assigned (20120209) | None (candidate not yet proposed) | View | |
54538 | CVE-2012-1295 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20120223) | None (candidate not yet proposed) | View | |
54794 | CVE-2012-1551 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20120309) | None (candidate not yet proposed) | View | |
55050 | CVE-2012-1807 | Candidate | Cross-site scripting (XSS) vulnerability in the web server in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120321) | None (candidate not yet proposed) | View | |
55306 | CVE-2012-2063 | Candidate | The Slidebox module before 7.x-1.4 for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified vectors. | Assigned (20120404) | None (candidate not yet proposed) | View |
Page 1481 of 20943, showing 5 records out of 104715 total, starting on record 7401, ending on 7405