CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54290  CVE-2012-1047  Candidate  Directory traversal vulnerability in the WWWHELP Service (js/html/wwhelp.htm) in Cyberoam Central Console (CCC) 2.00.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter in an Online_help action.  Assigned (20120212)  None (candidate not yet proposed)    View
54546  CVE-2012-1303  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in amCharts Flash 1 allow remote attackers to inject arbitrary web script or HTML via the (1) data_file or (2) settings_file parameter to ampie.swf; the message element in the chart_data parameter to (3) amcolumn.swf, (4) amline.swf, (5) amradar.swf, or (6) amxy.sw; or (7) the settings_file parameter to amstock.swf.  Assigned (20120227)  None (candidate not yet proposed)    View
54802  CVE-2012-1559  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120312)  None (candidate not yet proposed)    View
55058  CVE-2012-1815  Candidate  SQL injection vulnerability in Emerson DeltaV and DeltaV Workstations 9.3.1, 10.3.1, 11.3, and 11.3.1 and DeltaV ProEssentials Scientific Graph 5.0.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20120321)  None (candidate not yet proposed)    View
55314  CVE-2012-2071  Candidate  Cross-site scripting (XSS) vulnerability in the Contact Forms module 6.x-1.x before 6.x-1.13 for Drupal when the core contact form is enabled, allows remote authenticated users with the administer site-wide contact form permission to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View

Page 1503 of 20943, showing 5 records out of 104715 total, starting on record 7511, ending on 7515

Actions