CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57587  CVE-2012-4344  Candidate  Cross-site scripting (XSS) vulnerability in Ipswitch WhatsUp Gold 15.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving the SNMP system name of the attacking host.  Assigned (20120815)  None (candidate not yet proposed)    View
57843  CVE-2012-4600  Candidate  Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.14, 3.0.x before 3.0.16, and 3.1.x before 3.1.10, when Firefox or Opera is used, allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with nested HTML tags.  Assigned (20120822)  None (candidate not yet proposed)    View
58099  CVE-2012-4856  Candidate  The Service Processor in the IBM Power 5 91##-### and 940#-### before SF240_418_382 does not ensure that firewall code is executed, which allows remote attackers to execute arbitrary code via unspecified vectors.  Assigned (20120906)  None (candidate not yet proposed)    View
58355  CVE-2012-5112  Candidate  Use-after-free vulnerability in the SVG implementation in WebKit, as used in Google Chrome before 22.0.1229.94, allows remote attackers to execute arbitrary code via unspecified vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58611  CVE-2012-5368  Candidate  phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by modifying this code.  Assigned (20121010)  None (candidate not yet proposed)    View

Page 19976 of 20943, showing 5 records out of 104715 total, starting on record 99876, ending on 99880

Actions