CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56559  CVE-2012-3316  Candidate  Cross-site scripting (XSS) vulnerability in the Tivoli Process Automation Engine (TPAE) in IBM Maximo Asset Management 6.2 through 7.5, Maximo Asset Management Essentials 6.2 through 7.5, Tivoli Asset Management for IT 6.2 through 7.2, Tivoli Service Request Manager 7.1 and 7.2, Maximo Service Desk 6.2, Change and Configuration Management Database (CCMDB) 7.1 and 7.2, and SmartCloud Control Desk 7.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120607)  None (candidate not yet proposed)    View
56815  CVE-2012-3572  Candidate  Open Source Competency Center (OSCC) MyMeeting 3.0.1 and earlier, and MyMesyuarat 09b-1, does not properly verify uploaded documents, which allows remote authenticated users to execute arbitrary PHP code via a crafted document.  Assigned (20120615)  None (candidate not yet proposed)    View
57071  CVE-2012-3828  Candidate  Cross-site scripting (XSS) vulnerability in Joomla! 2.5.3 allows remote attackers to inject arbitrary web script or HTML via the Host HTTP Header.  Assigned (20120703)  None (candidate not yet proposed)    View
57327  CVE-2012-4084  Candidate  Cross-site request forgery (CSRF) vulnerability in the web-management interface in the fabric interconnect (FI) component in Cisco Unified Computing System (UCS) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCtg20755.  Assigned (20120731)  None (candidate not yet proposed)    View
57583  CVE-2012-4340  Candidate  Cross-site scripting (XSS) vulnerability in Sybase EAServer before 6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120815)  None (candidate not yet proposed)    View

Page 19667 of 20943, showing 5 records out of 104715 total, starting on record 98331, ending on 98335

Actions