CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55062  CVE-2012-1819  Candidate  Untrusted search path vulnerability in WellinTech KingView 6.53 allows local users to gain privileges via a Trojan horse DLL in the current working directory.  Assigned (20120321)  None (candidate not yet proposed)    View
55318  CVE-2012-2075  Candidate  Cross-site scripting (XSS) vulnerability in the Contact Save module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the access site-wide contact form permission to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View
55574  CVE-2012-2331  Candidate  Cross-site scripting (XSS) vulnerability in serendipity/serendipity_admin_image_selector.php in Serendipity before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the serendipity[textarea] parameter. NOTE: this issue might be resultant from cross-site request forgery (CSRF).  Assigned (20120419)  None (candidate not yet proposed)    View
55830  CVE-2012-2587  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in AfterLogic MailSuite Pro 6.3 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with a crafted SRC attribute of (1) an IFRAME element or (2) a SCRIPT element.  Assigned (20120509)  None (candidate not yet proposed)    View
56086  CVE-2012-2843  Candidate  Use-after-free vulnerability in Google Chrome before 20.0.1132.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to layout height tracking.  Assigned (20120519)  None (candidate not yet proposed)    View

Page 1822 of 20943, showing 5 records out of 104715 total, starting on record 9106, ending on 9110

Actions