CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
53783 | CVE-2012-0540 | Candidate | Unspecified vulnerability in Oracle MySQL Server 5.1.62 and earlier and 5.5.23 and earlier allows remote authenticated users to affect availability, related to GIS Extension. | Assigned (20120111) | None (candidate not yet proposed) | View | |
54039 | CVE-2012-0796 | Candidate | class.phpmailer.php in the PHPMailer library, as used in Moodle 1.9.x before 1.9.16, 2.0.x before 2.0.7, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 and other products, allows remote authenticated users to inject arbitrary e-mail headers via vectors involving a crafted (1) From: or (2) Sender: header. | Assigned (20120119) | None (candidate not yet proposed) | View | |
54295 | CVE-2012-1052 | Candidate | Buffer overflow in IvanView 1.2.15 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment. | Assigned (20120213) | None (candidate not yet proposed) | View | |
54551 | CVE-2012-1308 | Candidate | Cross-site request forgery (CSRF) vulnerability in redpass.cgi in D-Link DSL-2640B Firmware EU_4.00 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via the sysPassword parameter. | Assigned (20120227) | None (candidate not yet proposed) | View | |
54807 | CVE-2012-1564 | Candidate | Cross-site scripting (XSS) vulnerability in administration/create_album.php in YVS Image Gallery allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120312) | None (candidate not yet proposed) | View |
Page 1900 of 20943, showing 5 records out of 104715 total, starting on record 9496, ending on 9500