CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55575  CVE-2012-2332  Candidate  SQL injection vulnerability in serendipity/serendipity_admin.php in Serendipity before 1.6.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[plugin_to_conf] parameter. NOTE: this issue might be resultant from cross-site request forgery (CSRF).  Assigned (20120419)  None (candidate not yet proposed)    View
55831  CVE-2012-2588  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MailEnable Enterprise 6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, or (3) Subject header or (4) body in an SMTP e-mail message.  Assigned (20120509)  None (candidate not yet proposed)    View
56087  CVE-2012-2844  Candidate  The PDF functionality in Google Chrome before 20.0.1132.57 does not properly handle JavaScript code, which allows remote attackers to cause a denial of service (incorrect object access) or possibly have unspecified other impact via a crafted document.  Assigned (20120519)  None (candidate not yet proposed)    View
56343  CVE-2012-3100  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120530)  None (candidate not yet proposed)    View
56599  CVE-2012-3356  Candidate  The remote SVN views functionality (lib/vclib/svn/svn_ra.py) in ViewVC before 1.1.15 does not properly perform authorization, which allows remote attackers to bypass intended access restrictions via unspecified vectors.  Assigned (20120614)  None (candidate not yet proposed)    View

Page 1925 of 20943, showing 5 records out of 104715 total, starting on record 9621, ending on 9625

Actions