CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59133  CVE-2012-5890  Candidate  The Front End User Registration (sr_feuser_register) extension before 2.6.2 for TYPO3 allows remote attackers to obtain user names and passwords via the (1) edit perspective or (2) autologin feature.  Assigned (20121117)  None (candidate not yet proposed)    View
59389  CVE-2012-6146  Candidate  The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL.  Assigned (20121206)  None (candidate not yet proposed)    View
59645  CVE-2012-6402  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121216)  None (candidate not yet proposed)    View
59901  CVE-2012-6658  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SpiceWorks 5.3.75941 allow remote attackers to inject arbitrary web script or HTML via the (1) syslocation, (2) syscontact, or (3) sysName configuration in snmpd.conf. NOTE: this entry was SPLIT from CVE-2012-2956 per ADT2 due to different vulnerability types.  Assigned (20140917)  None (candidate not yet proposed)    View
60157  CVE-2013-0210  Candidate  The smart proxy Puppet run API in Foreman before 1.2.0 allows remote attackers to execute arbitrary commands via vectors related to escaping and Puppet commands.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 20778 of 20943, showing 5 records out of 104715 total, starting on record 103886, ending on 103890

Actions