CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57588  CVE-2012-4345  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Database Structure page in phpMyAdmin 3.4.x before 3.4.11.1 and 3.5.x before 3.5.2.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) a crafted table name during table creation, or a (2) Empty link or (3) Drop link for a crafted table name.  Assigned (20120815)  None (candidate not yet proposed)    View
57844  CVE-2012-4601  Candidate  Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_groups[] parameter to admin/code/tce_edit_test.php or (2) subject_id parameter to admin/code/tce_show_all_questions.php.  Assigned (20120822)  None (candidate not yet proposed)    View
58100  CVE-2012-4857  Candidate  Buffer overflow in IBM Informix 11.50 through 11.50.xC9W2 and 11.70 before 11.70.xC7 allows remote authenticated users to execute arbitrary code via a crafted SQL statement.  Assigned (20120906)  None (candidate not yet proposed)    View
58356  CVE-2012-5113  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120924)  None (candidate not yet proposed)    View
58612  CVE-2012-5369  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121010)  None (candidate not yet proposed)    View

Page 20053 of 20943, showing 5 records out of 104715 total, starting on record 100261, ending on 100265

Actions