CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58347  CVE-2012-5104  Candidate  Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the Loginname parameter.  Assigned (20120923)  None (candidate not yet proposed)    View
58603  CVE-2012-5360  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121010)  None (candidate not yet proposed)    View
58859  CVE-2012-5616  Candidate  Apache CloudStack 4.0.0-incubating and Citrix CloudPlatform (formerly Citrix CloudStack) before 3.0.6 stores sensitive information in the log4j.conf log file, which allows local users to obtain (1) the SSH private key as recorded by the createSSHKeyPair API, (2) the password of an added host as recorded by the AddHost API, or the password of an added VM as recorded by the (3) DeployVM or (4) ResetPasswordForVM API.  Assigned (20121024)  None (candidate not yet proposed)    View
59115  CVE-2012-5872  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121115)  None (candidate not yet proposed)    View
59371  CVE-2012-6128  Candidate  Multiple stack-based buffer overflows in http.c in OpenConnect before 4.08 allow remote VPN gateways to cause a denial of service (application crash) via a long (1) hostname, (2) path, or (3) cookie list in a response.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 19360 of 20943, showing 5 records out of 104715 total, starting on record 96796, ending on 96800

Actions