CVE List

Id CVE No. Status Description Phase Votes Comments Actions
53783  CVE-2012-0540  Candidate  Unspecified vulnerability in Oracle MySQL Server 5.1.62 and earlier and 5.5.23 and earlier allows remote authenticated users to affect availability, related to GIS Extension.  Assigned (20120111)  None (candidate not yet proposed)    View
54039  CVE-2012-0796  Candidate  class.phpmailer.php in the PHPMailer library, as used in Moodle 1.9.x before 1.9.16, 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 and other products, allows remote authenticated users to inject arbitrary e-mail headers via vectors involving a crafted (1) From: or (2) Sender: header.  Assigned (20120119)  None (candidate not yet proposed)    View
54295  CVE-2012-1052  Candidate  Buffer overflow in IvanView 1.2.15 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment.  Assigned (20120213)  None (candidate not yet proposed)    View
54551  CVE-2012-1308  Candidate  Cross-site request forgery (CSRF) vulnerability in redpass.cgi in D-Link DSL-2640B Firmware EU_4.00 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via the sysPassword parameter.  Assigned (20120227)  None (candidate not yet proposed)    View
54807  CVE-2012-1564  Candidate  Cross-site scripting (XSS) vulnerability in administration/create_album.php in YVS Image Gallery allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120312)  None (candidate not yet proposed)    View

Page 1900 of 20943, showing 5 records out of 104715 total, starting on record 9496, ending on 9500

Actions