CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56055  CVE-2012-2812  Candidate  The exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from process memory via crafted EXIF tags in an image.  Assigned (20120519)  None (candidate not yet proposed)    View
56311  CVE-2012-3068  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120530)  None (candidate not yet proposed)    View
56567  CVE-2012-3324  Candidate  Directory traversal vulnerability in the UTL_FILE module in IBM DB2 and DB2 Connect 10.1 before FP1 on Windows allows remote authenticated users to modify, delete, or read arbitrary files via a pathname in the file field.  Assigned (20120607)  None (candidate not yet proposed)    View
56823  CVE-2012-3580  Candidate  Symantec Messaging Gateway (SMG) before 10.0 allows remote authenticated users to modify the web application by leveraging access to the management interface.  Assigned (20120619)  None (candidate not yet proposed)    View
57079  CVE-2012-3836  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Baby Gekko before 1.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) groupname parameter in a savecategory in the users module; (2) virtual_filename, (3) branch, (4) contact_person, (5) street, (6) city, (7) province, (8) postal, (9) country, (10) tollfree, (11) phone, (12) fax, or (13) mobile parameter in a saveitem action in the contacts module; (14) title parameter in a savecategory action in the menus module; (15) firstname or (16) lastname in a saveitem action in the users module; (17) meta_key or (18) meta_description in a saveitem action in the blog module; or (19) the PATH_INFO to admin/index.php.  Assigned (20120703)  None (candidate not yet proposed)    View

Page 20300 of 20943, showing 5 records out of 104715 total, starting on record 101496, ending on 101500

Actions