CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52979  CVE-2011-5067  Candidate  move_uploaded_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.  Assigned (20120128)  None (candidate not yet proposed)    View
53235  CVE-2011-5323  Candidate  GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions has a password of A11enda1e for the sa SQL server user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20150705)  None (candidate not yet proposed)    View
53491  CVE-2012-0248  Candidate  ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted image whose IFD contains IOP tags that all reference the beginning of the IDF.  Assigned (20111221)  None (candidate not yet proposed)    View
53747  CVE-2012-0504  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, and 6 Update 30 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install and the Java Update mechanism.  Assigned (20120111)  None (candidate not yet proposed)    View
54003  CVE-2012-0760  Candidate  The Shockwave 3D Asset component in Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0757, CVE-2012-0761, CVE-2012-0762, CVE-2012-0763, CVE-2012-0764, and CVE-2012-0766.  Assigned (20120118)  None (candidate not yet proposed)    View

Page 18849 of 20943, showing 5 records out of 104715 total, starting on record 94241, ending on 94245

Actions