CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56822  CVE-2012-3579  Candidate  Symantec Messaging Gateway (SMG) before 10.0 has a default password for an unspecified account, which makes it easier for remote attackers to obtain privileged access via an SSH session.  Assigned (20120619)  None (candidate not yet proposed)    View
57078  CVE-2012-3835  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to top.php or (2) time[0][0] parameter to forensics/base_qry_main.php, which is not properly handled in an error page.  Assigned (20120703)  None (candidate not yet proposed)    View
57334  CVE-2012-4091  Candidate  The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 message, aka Bug ID CSCtj73415.  Assigned (20120731)  None (candidate not yet proposed)    View
57590  CVE-2012-4347  Candidate  Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) logFile parameter in a logs action to brightmail/export or (2) localBackupFileSelection parameter in an APPLIANCE restoreSource action to brightmail/admin/restore/download.do.  Assigned (20120816)  None (candidate not yet proposed)    View
57846  CVE-2012-4603  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120822)  None (candidate not yet proposed)    View

Page 20221 of 20943, showing 5 records out of 104715 total, starting on record 101101, ending on 101105

Actions