CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
55575 | CVE-2012-2332 | Candidate | SQL injection vulnerability in serendipity/serendipity_admin.php in Serendipity before 1.6.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[plugin_to_conf] parameter. NOTE: this issue might be resultant from cross-site request forgery (CSRF). | Assigned (20120419) | None (candidate not yet proposed) | View | |
55831 | CVE-2012-2588 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in MailEnable Enterprise 6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, or (3) Subject header or (4) body in an SMTP e-mail message. | Assigned (20120509) | None (candidate not yet proposed) | View | |
56087 | CVE-2012-2844 | Candidate | The PDF functionality in Google Chrome before 20.0.1132.57 does not properly handle JavaScript code, which allows remote attackers to cause a denial of service (incorrect object access) or possibly have unspecified other impact via a crafted document. | Assigned (20120519) | None (candidate not yet proposed) | View | |
56343 | CVE-2012-3100 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20120530) | None (candidate not yet proposed) | View | |
56599 | CVE-2012-3356 | Candidate | The remote SVN views functionality (lib/vclib/svn/svn_ra.py) in ViewVC before 1.1.15 does not properly perform authorization, which allows remote attackers to bypass intended access restrictions via unspecified vectors. | Assigned (20120614) | None (candidate not yet proposed) | View |
Page 1925 of 20943, showing 5 records out of 104715 total, starting on record 9621, ending on 9625