CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59106  CVE-2012-5863  Candidate  ping.php on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in the ip_dominio parameter.  Assigned (20121114)  None (candidate not yet proposed)    View
59362  CVE-2012-6119  Candidate  Candlepin before 0.7.24, as used in Red Hat Subscription Asset Manager before 1.2.1, does not properly check manifest signatures, which allows local users to modify manifests.  Assigned (20121206)  None (candidate not yet proposed)    View
59618  CVE-2012-6375  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121216)  None (candidate not yet proposed)    View
59874  CVE-2012-6631  Candidate  Cross-site request forgery (CSRF) vulnerability in accounts/admin/index.php in Vessio NetBill 1.2 allows remote attackers to hijack the authentication of administrators for requests that add accounts via a new-client action.  Assigned (20140116)  None (candidate not yet proposed)    View
60130  CVE-2013-0183  Candidate  multipart/parser.rb in Rack 1.3.x before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to cause a denial of service (memory consumption and out-of-memory error) via a long string in a Multipart HTTP packet.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 18632 of 20943, showing 5 records out of 104715 total, starting on record 93156, ending on 93160

Actions