CVE List

Id CVE No. Status Description Phase Votes Comments Actions
53218  CVE-2011-5306  Candidate  Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/setup_edit.cgi in CosmoShop ePRO 10.05.00 allows remote attackers to hijack the authentication of administrators for requests that modify settings via a setup action.  Assigned (20150101)  None (candidate not yet proposed)    View
53474  CVE-2012-0231  Candidate  PRLicenseMgr.exe in the Proficy Server License Manager in GE Intelligent Platforms Proficy Plant Applications 5.0 and earlier allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted TCP session on port 12401.  Assigned (20111221)  None (candidate not yet proposed)    View
53730  CVE-2012-0487  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0486, CVE-2012-0488, CVE-2012-0489, CVE-2012-0491, CVE-2012-0493, and CVE-2012-0495.  Assigned (20120111)  None (candidate not yet proposed)    View
53986  CVE-2012-0743  Candidate  IBM Tivoli Directory Server (TDS) 6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via a malformed LDAP paged search request.  Assigned (20120117)  None (candidate not yet proposed)    View
54242  CVE-2012-0999  Candidate  SQL injection vulnerability in modules/news/rss.php in LEPTON before 1.1.4 allows remote attackers to execute arbitrary SQL commands via the group_id parameter.  Assigned (20120202)  None (candidate not yet proposed)    View

Page 18661 of 20943, showing 5 records out of 104715 total, starting on record 93301, ending on 93305

Actions