CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58338  CVE-2012-5095  Candidate  Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to inetd.  Assigned (20120922)  None (candidate not yet proposed)    View
58594  CVE-2012-5351  Candidate  Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack," a different vulnerability than CVE-2012-4418.  Assigned (20121009)  None (candidate not yet proposed)    View
58850  CVE-2012-5607  Candidate  The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a "Remote Timing Attack."  Assigned (20121024)  None (candidate not yet proposed)    View
59106  CVE-2012-5863  Candidate  ping.php on the Sinapsi eSolar Light Photovoltaic System Monitor (aka Schneider Electric Ezylog photovoltaic SCADA management server), Sinapsi eSolar, and Sinapsi eSolar DUO with firmware before 2.0.2870_2.2.12 allows remote attackers to execute arbitrary commands via shell metacharacters in the ip_dominio parameter.  Assigned (20121114)  None (candidate not yet proposed)    View
59362  CVE-2012-6119  Candidate  Candlepin before 0.7.24, as used in Red Hat Subscription Asset Manager before 1.2.1, does not properly check manifest signatures, which allows local users to modify manifests.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 18665 of 20943, showing 5 records out of 104715 total, starting on record 93321, ending on 93325

Actions