CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52718  CVE-2011-4806  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in main.php in phpAlbum 0.4.1.16 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) var1 and (2) keyword parameters.  Assigned (20111213)  None (candidate not yet proposed)    View
52974  CVE-2011-5062  Candidate  The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not check qop values, which might allow remote attackers to bypass intended integrity-protection requirements via a qop=auth value, a different vulnerability than CVE-2011-1184.  Assigned (20120114)  None (candidate not yet proposed)    View
53230  CVE-2011-5318  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in diafan.CMS before 5.1 allow remote attackers to hijack the authentication of administrators for requests that (1) modify articles via a save_post action to admin/news/saveNEWS_ID/, (2) modify settings via a save_post action to admin/site/save2/, or (3) modify credentials via a save_post action to admin/usersite/save2/.  Assigned (20150101)  None (candidate not yet proposed)    View
53486  CVE-2012-0243  Candidate  Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.  Assigned (20111221)  None (candidate not yet proposed)    View
53742  CVE-2012-0499  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, 5.0 Update 33 and earlier, and 1.4.2_35 and earlier; and JavaFX 2.0.2 and earlier; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  Assigned (20120111)  None (candidate not yet proposed)    View

Page 19572 of 20943, showing 5 records out of 104715 total, starting on record 97856, ending on 97860

Actions