CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58901  CVE-2012-5658  Candidate  rhc-chk.rb in Red Hat OpenShift Origin before 1.1, when -d (debug mode) is used, outputs the password and other sensitive information in cleartext, which allows context-dependent attackers to obtain sensitive information, as demonstrated by including log files or Bugzilla reports in support channels.  Assigned (20121024)  None (candidate not yet proposed)    View
59157  CVE-2012-5914  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the sed_import function in system/functions.php in Neocrome Seditio build 160 and 161 allow remote attackers to inject arbitrary web script or HTML via the (1) newmsg or (2) rtext parameter. NOTE: some of these details are obtained from third party information.  Assigned (20121117)  None (candidate not yet proposed)    View
59413  CVE-2012-6170  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121206)  None (candidate not yet proposed)    View
59669  CVE-2012-6426  Candidate  LemonLDAP::NG before 1.2.3 does not use the signature-verification capability of the Lasso library, which allows remote attackers to bypass intended access-control restrictions via crafted SAML data.  Assigned (20121218)  None (candidate not yet proposed)    View
59925  CVE-2012-6682  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141120)  None (candidate not yet proposed)    View

Page 1745 of 20943, showing 5 records out of 104715 total, starting on record 8721, ending on 8725

Actions