CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56568  CVE-2012-3325  Candidate  IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.45, 7.0.x before 7.0.0.25, 8.0.x before 8.0.0.5, and 8.5.x Full Profile before 8.5.0.1, when the PM44303 fix is installed, does not properly validate credentials, which allows remote authenticated users to obtain administrative access via unspecified vectors.  Assigned (20120607)  None (candidate not yet proposed)    View
56824  CVE-2012-3581  Candidate  Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to obtain potentially sensitive information about component versions via unspecified vectors.  Assigned (20120619)  None (candidate not yet proposed)    View
57080  CVE-2012-3837  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in apps/users/registration.template.php in Baby Gekko 1.2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) email_address, (3) password, (4) password_verify, (5) firstname, (6) lastname, or (7) verification_code parameter to users/action/register. NOTE: some of these details are obtained from third party information.  Assigned (20120703)  None (candidate not yet proposed)    View
57336  CVE-2012-4093  Candidate  The Manager component in Cisco Unified Computing System (UCS) allows local users to cause a denial of service via an invalid Smart Call Home contact address, aka Bug ID CSCtl00186.  Assigned (20120731)  None (candidate not yet proposed)    View
57592  CVE-2012-4349  Candidate  Unquoted Windows search path vulnerability in Symantec Network Access Control (SNAC) 12.1 before RU2 allows local users to gain privileges via unspecified vectors.  Assigned (20120816)  None (candidate not yet proposed)    View

Page 20361 of 20943, showing 5 records out of 104715 total, starting on record 101801, ending on 101805

Actions