CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55063  CVE-2012-1820  Candidate  The bgp_capability_orf function in bgpd in Quagga 0.99.20.1 and earlier allows remote attackers to cause a denial of service (assertion failure and daemon exit) by leveraging a BGP peering relationship and sending a malformed Outbound Route Filtering (ORF) capability TLV in an OPEN message.  Assigned (20120321)  None (candidate not yet proposed)    View
55319  CVE-2012-2076  Candidate  Cross-site scripting (XSS) vulnerability in the administration forms in the ShareThis module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with administer sharethis permissions to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View
55575  CVE-2012-2332  Candidate  SQL injection vulnerability in serendipity/serendipity_admin.php in Serendipity before 1.6.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[plugin_to_conf] parameter. NOTE: this issue might be resultant from cross-site request forgery (CSRF).  Assigned (20120419)  None (candidate not yet proposed)    View
55831  CVE-2012-2588  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MailEnable Enterprise 6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, or (3) Subject header or (4) body in an SMTP e-mail message.  Assigned (20120509)  None (candidate not yet proposed)    View
56087  CVE-2012-2844  Candidate  The PDF functionality in Google Chrome before 20.0.1132.57 does not properly handle JavaScript code, which allows remote attackers to cause a denial of service (incorrect object access) or possibly have unspecified other impact via a crafted document.  Assigned (20120519)  None (candidate not yet proposed)    View

Page 1901 of 20943, showing 5 records out of 104715 total, starting on record 9501, ending on 9505

Actions