CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52468  CVE-2011-4556  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111127)  None (candidate not yet proposed)    View
52724  CVE-2011-4812  Candidate  Cross-site scripting (XSS) vulnerability in nowosci.php in BestShopPro allows remote attackers to inject arbitrary web script or HTML via the str parameter.  Assigned (20111213)  None (candidate not yet proposed)    View
52980  CVE-2011-5068  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in Support Incident Tracker (aka SiT!) 3.65 allow remote attackers to hijack the authentication of user for requests that delete a user via user_delete.php and other unspecified programs.  Assigned (20120128)  None (candidate not yet proposed)    View
53236  CVE-2011-5324  Candidate  The TeraRecon server, as used in GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions, has a password of (1) shared for the shared user and (2) scan for the scan user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20150705)  None (candidate not yet proposed)    View
53492  CVE-2012-0249  Candidate  Buffer overflow in the ospf_ls_upd_list_lsa function in ospf_packet.c in the OSPFv2 implementation in ospfd in Quagga before 0.99.20.1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a Link State Update (aka LS Update) packet that is smaller than the length specified in its header.  Assigned (20111221)  None (candidate not yet proposed)    View

Page 20052 of 20943, showing 5 records out of 104715 total, starting on record 100256, ending on 100260

Actions