CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54267  CVE-2012-1024  Candidate  Directory traversal vulnerability in file in Enigma2 Webinterface 1.5rc1 and 1.5beta4 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.  Assigned (20120207)  None (candidate not yet proposed)    View
54523  CVE-2012-1280  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120222)  None (candidate not yet proposed)    View
54779  CVE-2012-1536  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120308)  None (candidate not yet proposed)    View
55035  CVE-2012-1792  Candidate  Cross-site scripting (XSS) vulnerability in osCommerce/OM/Core/Site/Setup/Application/Install/RPC/DBCheck.php in OSCommerce Online Merchant 3.0.2, when the software is being installed, allows remote attackers to inject arbitrary web script or HTML via the name parameter to oscommerce/index.php, which is not properly handled in an error message. NOTE: this might not be a vulnerability, since the ability to access oscommerce/index.php during installation may already imply administrator privileges.  Assigned (20120319)  None (candidate not yet proposed)    View
55291  CVE-2012-2048  Candidate  Unspecified vulnerability in Adobe ColdFusion 10 and earlier allows attackers to cause a denial of service via unknown vectors.  Assigned (20120402)  None (candidate not yet proposed)    View

Page 20614 of 20943, showing 5 records out of 104715 total, starting on record 103066, ending on 103070

Actions