CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57595  CVE-2012-4352  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork 6.1 before SP1 allow remote attackers to inject arbitrary web script or HTML via the blogName parameter to (1) community/blog.jsp or (2) community/blogSearch.jsp, the (3) calendarType or (4) monthNumber parameter to community/calendar.jsp, or the (5) flag parameter to swDashboard/ajax/setAppFlag.jsp.  Assigned (20120817)  None (candidate not yet proposed)    View
57851  CVE-2012-4608  Candidate  Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20120824)  None (candidate not yet proposed)    View
58107  CVE-2012-4864  Candidate  Oreans WinLicense 2.1.8.0 allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via a crafted xml file.  Assigned (20120906)  None (candidate not yet proposed)    View
58363  CVE-2012-5120  Candidate  Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, on 64-bit Linux platforms allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers an out-of-bounds access to an array.  Assigned (20120924)  None (candidate not yet proposed)    View
58619  CVE-2012-5376  Candidate  The Inter-process Communication (IPC) implementation in Google Chrome before 22.0.1229.94 allows remote attackers to bypass intended sandbox restrictions and write to arbitrary files by leveraging access to a renderer process, a different vulnerability than CVE-2012-5112.  Assigned (20121011)  None (candidate not yet proposed)    View

Page 20593 of 20943, showing 5 records out of 104715 total, starting on record 102961, ending on 102965

Actions