CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59387  CVE-2012-6144  Candidate  SQL injection vulnerability in the Backend History module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated backend users to execute arbitrary SQL commands via unspecified vectors.  Assigned (20121206)  None (candidate not yet proposed)    View
59643  CVE-2012-6400  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121216)  None (candidate not yet proposed)    View
59899  CVE-2012-6656  Candidate  iconvdata/ibm930.c in GNU C Library (aka glibc) before 2.16 allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a multibyte character value of "0xffff" to the iconv function when converting IBM930 encoded data to UTF-8.  Assigned (20140901)  None (candidate not yet proposed)    View
60155  CVE-2013-0208  Candidate  The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when using nova-volumes, allows remote authenticated users to boot from other users" volumes via a volume id in the block_device_mapping parameter.  Assigned (20121206)  None (candidate not yet proposed)    View
60411  CVE-2013-0464  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20121216)  None (candidate not yet proposed)    View

Page 20618 of 20943, showing 5 records out of 104715 total, starting on record 103086, ending on 103090

Actions