CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56820  CVE-2012-3577  Candidate  Unrestricted file upload vulnerability in doupload.php in the Nmedia Member Conversation plugin before 1.4 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/uploads/user_uploads.  Assigned (20120616)  None (candidate not yet proposed)    View
57076  CVE-2012-3833  Candidate  Cross-site scripting (XSS) vulnerability in the default index page in admin/ in Quick.CMS 4.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter.  Assigned (20120703)  None (candidate not yet proposed)    View
57332  CVE-2012-4089  Candidate  MCTOOLS in the fabric interconnect in Cisco Unified Computing System (UCS) allows local users to execute arbitrary Baseboard Management Controller (BMC) commands by leveraging (1) local, (2) shell-level, or (3) debug-level privileges at the operating-system layer, aka Bug ID CSCtg76239.  Assigned (20120731)  None (candidate not yet proposed)    View
57588  CVE-2012-4345  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Database Structure page in phpMyAdmin 3.4.x before 3.4.11.1 and 3.5.x before 3.5.2.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) a crafted table name during table creation, or a (2) Empty link or (3) Drop link for a crafted table name.  Assigned (20120815)  None (candidate not yet proposed)    View
57844  CVE-2012-4601  Candidate  Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_groups[] parameter to admin/code/tce_edit_test.php or (2) subject_id parameter to admin/code/tce_show_all_questions.php.  Assigned (20120822)  None (candidate not yet proposed)    View

Page 18929 of 20943, showing 5 records out of 104715 total, starting on record 94641, ending on 94645

Actions