CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
56559 | CVE-2012-3316 | Candidate | Cross-site scripting (XSS) vulnerability in the Tivoli Process Automation Engine (TPAE) in IBM Maximo Asset Management 6.2 through 7.5, Maximo Asset Management Essentials 6.2 through 7.5, Tivoli Asset Management for IT 6.2 through 7.2, Tivoli Service Request Manager 7.1 and 7.2, Maximo Service Desk 6.2, Change and Configuration Management Database (CCMDB) 7.1 and 7.2, and SmartCloud Control Desk 7.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120607) | None (candidate not yet proposed) | View | |
56815 | CVE-2012-3572 | Candidate | Open Source Competency Center (OSCC) MyMeeting 3.0.1 and earlier, and MyMesyuarat 09b-1, does not properly verify uploaded documents, which allows remote authenticated users to execute arbitrary PHP code via a crafted document. | Assigned (20120615) | None (candidate not yet proposed) | View | |
57071 | CVE-2012-3828 | Candidate | Cross-site scripting (XSS) vulnerability in Joomla! 2.5.3 allows remote attackers to inject arbitrary web script or HTML via the Host HTTP Header. | Assigned (20120703) | None (candidate not yet proposed) | View | |
57327 | CVE-2012-4084 | Candidate | Cross-site request forgery (CSRF) vulnerability in the web-management interface in the fabric interconnect (FI) component in Cisco Unified Computing System (UCS) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCtg20755. | Assigned (20120731) | None (candidate not yet proposed) | View | |
57583 | CVE-2012-4340 | Candidate | Cross-site scripting (XSS) vulnerability in Sybase EAServer before 6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120815) | None (candidate not yet proposed) | View |
Page 19667 of 20943, showing 5 records out of 104715 total, starting on record 98331, ending on 98335