CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
57595 | CVE-2012-4352 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork 6.1 before SP1 allow remote attackers to inject arbitrary web script or HTML via the blogName parameter to (1) community/blog.jsp or (2) community/blogSearch.jsp, the (3) calendarType or (4) monthNumber parameter to community/calendar.jsp, or the (5) flag parameter to swDashboard/ajax/setAppFlag.jsp. | Assigned (20120817) | None (candidate not yet proposed) | View | |
57851 | CVE-2012-4608 | Candidate | Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack the authentication of arbitrary users. | Assigned (20120824) | None (candidate not yet proposed) | View | |
58107 | CVE-2012-4864 | Candidate | Oreans WinLicense 2.1.8.0 allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via a crafted xml file. | Assigned (20120906) | None (candidate not yet proposed) | View | |
58363 | CVE-2012-5120 | Candidate | Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, on 64-bit Linux platforms allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers an out-of-bounds access to an array. | Assigned (20120924) | None (candidate not yet proposed) | View | |
58619 | CVE-2012-5376 | Candidate | The Inter-process Communication (IPC) implementation in Google Chrome before 22.0.1229.94 allows remote attackers to bypass intended sandbox restrictions and write to arbitrary files by leveraging access to a renderer process, a different vulnerability than CVE-2012-5112. | Assigned (20121011) | None (candidate not yet proposed) | View |
Page 20593 of 20943, showing 5 records out of 104715 total, starting on record 102961, ending on 102965