CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58089  CVE-2012-4846  Candidate  IBM Lotus Notes 8.5.x before 8.5.3 FP3 does not include the HTTPOnly flag in a Set-Cookie header for a web-application cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, aka SPRs JMAS7TRNLN and SRAO8U3Q68.  Assigned (20120906)  None (candidate not yet proposed)    View
58345  CVE-2012-5102  Candidate  Cross-site scripting (XSS) vulnerability in inc/extensions.php in VertrigoServ 2.25 allows remote attackers to inject arbitrary web script or HTML via the ext parameter.  Assigned (20120923)  None (candidate not yet proposed)    View
58601  CVE-2012-5358  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121010)  None (candidate not yet proposed)    View
58857  CVE-2012-5614  Candidate  Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier, and MariaDB 5.5.28a and possibly other versions, allows remote authenticated users to cause a denial of service (mysqld crash) via a SELECT command with an UpdateXML command containing XML with a large number of unique, nested elements.  Assigned (20121024)  None (candidate not yet proposed)    View
59113  CVE-2012-5870  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121114)  None (candidate not yet proposed)    View

Page 19187 of 20943, showing 5 records out of 104715 total, starting on record 95931, ending on 95935

Actions