CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58610  CVE-2012-5367  Candidate  Multiple SQL injection vulnerabilities in OrangeHRM 2.7.1 RC 1 allow remote authenticated administrators to execute arbitrary SQL commands via the sortField parameter to (1) viewCustomers, (2) viewPayGrades, or (3) viewSystemUsers in symfony/web/index.php/admin/, as demonstrated using cross-site request forgery (CSRF) attacks.  Assigned (20121010)  None (candidate not yet proposed)    View
58866  CVE-2012-5623  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121024)  None (candidate not yet proposed)    View
59122  CVE-2012-5879  Candidate  An ActiveX control in McHealthCheck.dll in McAfee Virtual Technician (MVT) and ePO-MVT 6.5.0.2101 and earlier allows remote attackers to modify or create arbitrary files via a full pathname argument to the Save method.  Assigned (20121116)  None (candidate not yet proposed)    View
59378  CVE-2012-6135  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121206)  None (candidate not yet proposed)    View
59634  CVE-2012-6391  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121216)  None (candidate not yet proposed)    View

Page 19526 of 20943, showing 5 records out of 104715 total, starting on record 97626, ending on 97630

Actions