CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57076  CVE-2012-3833  Candidate  Cross-site scripting (XSS) vulnerability in the default index page in admin/ in Quick.CMS 4.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter.  Assigned (20120703)  None (candidate not yet proposed)    View
57332  CVE-2012-4089  Candidate  MCTOOLS in the fabric interconnect in Cisco Unified Computing System (UCS) allows local users to execute arbitrary Baseboard Management Controller (BMC) commands by leveraging (1) local, (2) shell-level, or (3) debug-level privileges at the operating-system layer, aka Bug ID CSCtg76239.  Assigned (20120731)  None (candidate not yet proposed)    View
57588  CVE-2012-4345  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Database Structure page in phpMyAdmin 3.4.x before 3.4.11.1 and 3.5.x before 3.5.2.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) a crafted table name during table creation, or a (2) Empty link or (3) Drop link for a crafted table name.  Assigned (20120815)  None (candidate not yet proposed)    View
57844  CVE-2012-4601  Candidate  Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_groups[] parameter to admin/code/tce_edit_test.php or (2) subject_id parameter to admin/code/tce_show_all_questions.php.  Assigned (20120822)  None (candidate not yet proposed)    View
58100  CVE-2012-4857  Candidate  Buffer overflow in IBM Informix 11.50 through 11.50.xC9W2 and 11.70 before 11.70.xC7 allows remote authenticated users to execute arbitrary code via a crafted SQL statement.  Assigned (20120906)  None (candidate not yet proposed)    View

Page 20062 of 20943, showing 5 records out of 104715 total, starting on record 100306, ending on 100310

Actions