CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55539  CVE-2012-2296  Candidate  The Janrain Engage (formerly RPX) module for Drupal 6.x-1.x. 6.x-2.x before 6.x-2.2, and 7.x-2.x before 7.x-2.2 stores user profile data from Engage in session tables, which might allow remote attackers to obtain sensitive information by leveraging a separate vulnerability.  Assigned (20120419)  None (candidate not yet proposed)    View
55795  CVE-2012-2552  Candidate  Cross-site scripting (XSS) vulnerability in the SQL Server Report Manager in Microsoft SQL Server 2000 Reporting Services SP2 and SQL Server 2005 SP4, 2008 SP2 and SP3, 2008 R2 SP1, and 2012 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka "Reflected XSS Vulnerability."  Assigned (20120509)  None (candidate not yet proposed)    View
56051  CVE-2012-2808  Candidate  The PRNG implementation in the DNS resolver in Bionic in Android before 4.1.1 incorrectly uses time and PID information during the generation of random numbers for query ID values and UDP source ports, which makes it easier for remote attackers to spoof DNS responses by guessing these numbers, a related issue to CVE-2015-0800.  Assigned (20120519)  None (candidate not yet proposed)    View
56307  CVE-2012-3064  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120530)  None (candidate not yet proposed)    View
56563  CVE-2012-3320  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120607)  None (candidate not yet proposed)    View

Page 18851 of 20943, showing 5 records out of 104715 total, starting on record 94251, ending on 94255

Actions