CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
57826 | CVE-2012-4583 | Candidate | McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard. | Assigned (20120822) | None (candidate not yet proposed) | View | |
58082 | CVE-2012-4839 | Candidate | The OSLC interface in the Web Client (aka CQ Web) in IBM Rational ClearQuest 7.1.2.x before 7.1.2.9 and 8.0.0.x before 8.0.0.5 allows remote attackers to conduct phishing attacks via a FRAME element. | Assigned (20120906) | None (candidate not yet proposed) | View | |
58338 | CVE-2012-5095 | Candidate | Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to inetd. | Assigned (20120922) | None (candidate not yet proposed) | View | |
58594 | CVE-2012-5351 | Candidate | Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack," a different vulnerability than CVE-2012-4418. | Assigned (20121009) | None (candidate not yet proposed) | View | |
58850 | CVE-2012-5607 | Candidate | The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a "Remote Timing Attack." | Assigned (20121024) | None (candidate not yet proposed) | View |
Page 18631 of 20943, showing 5 records out of 104715 total, starting on record 93151, ending on 93155