CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52972  CVE-2011-5060  Candidate  The par_mktmpdir function in the PAR module before 1.003 for Perl creates temporary files in a directory with a predictable name without verifying ownership and permissions of this directory, which allows local users to overwrite files when another user extracts a PAR packed program, a different vulnerability in a different package than CVE-2011-4114.  Assigned (20120113)  None (candidate not yet proposed)    View
53228  CVE-2011-5316  Candidate  Cross-site request forgery (CSRF) vulnerability in admin/index.php in Cambio 0.5a nightly r37 allows remote attackers to hijack the authentication of administrators for requests that modify credentials via a user save action.  Assigned (20150101)  None (candidate not yet proposed)    View
53484  CVE-2012-0241  Candidate  Advantech/BroadWin WebAccess before 7.0 allows remote attackers to cause a denial of service (memory corruption) via a modified stream identifier to a function.  Assigned (20111221)  None (candidate not yet proposed)    View
53740  CVE-2012-0497  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, and 6 Update 30 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  Assigned (20120111)  None (candidate not yet proposed)    View
53996  CVE-2012-0753  Candidate  Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x and 3.x; and before 11.1.115.6 on Android 4.x allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted MP4 data.  Assigned (20120118)  None (candidate not yet proposed)    View

Page 19433 of 20943, showing 5 records out of 104715 total, starting on record 97161, ending on 97165

Actions