CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57335  CVE-2012-4092  Candidate  The management interface in the Central Software component in Cisco Unified Computing System (UCS) does not properly validate the identity of vCenter consoles, which allows man-in-the-middle attackers to read or modify an inter-device data stream by spoofing an identity, aka Bug ID CSCtk00683.  Assigned (20120731)  None (candidate not yet proposed)    View
57591  CVE-2012-4348  Candidate  The management console in Symantec Endpoint Protection (SEP) 11.0 before RU7-MP3 and 12.1 before RU2, and Symantec Endpoint Protection Small Business Edition 12.x before 12.1 RU2, does not properly validate input for PHP scripts, which allows remote authenticated users to execute arbitrary code via unspecified vectors.  Assigned (20120816)  None (candidate not yet proposed)    View
57847  CVE-2012-4604  Candidate  The TRITON management console in Websense Web Security before 7.6 Hotfix 24 allows remote attackers to bypass authentication and read arbitrary reports via a crafted uid field, in conjunction with a crafted userRoles field, in a cookie, as demonstrated by a request to explorer_wse/favorites.exe.  Assigned (20120823)  None (candidate not yet proposed)    View
58103  CVE-2012-4860  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120906)  None (candidate not yet proposed)    View
58359  CVE-2012-5116  Candidate  Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG filters.  Assigned (20120924)  None (candidate not yet proposed)    View

Page 20301 of 20943, showing 5 records out of 104715 total, starting on record 101501, ending on 101505

Actions