CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
59133 | CVE-2012-5890 | Candidate | The Front End User Registration (sr_feuser_register) extension before 2.6.2 for TYPO3 allows remote attackers to obtain user names and passwords via the (1) edit perspective or (2) autologin feature. | Assigned (20121117) | None (candidate not yet proposed) | View | |
59389 | CVE-2012-6146 | Candidate | The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL. | Assigned (20121206) | None (candidate not yet proposed) | View | |
59645 | CVE-2012-6402 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20121216) | None (candidate not yet proposed) | View | |
59901 | CVE-2012-6658 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in SpiceWorks 5.3.75941 allow remote attackers to inject arbitrary web script or HTML via the (1) syslocation, (2) syscontact, or (3) sysName configuration in snmpd.conf. NOTE: this entry was SPLIT from CVE-2012-2956 per ADT2 due to different vulnerability types. | Assigned (20140917) | None (candidate not yet proposed) | View | |
60157 | CVE-2013-0210 | Candidate | The smart proxy Puppet run API in Foreman before 1.2.0 allows remote attackers to execute arbitrary commands via vectors related to escaping and Puppet commands. | Assigned (20121206) | None (candidate not yet proposed) | View |
Page 20778 of 20943, showing 5 records out of 104715 total, starting on record 103886, ending on 103890