CVE List

Id CVE No. Status Description Phase Votes Comments Actions
56831  CVE-2012-3588  Candidate  Directory traversal vulnerability in preview.php in the Plugin Newsletter plugin 1.5 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the data parameter.  Assigned (20120619)  None (candidate not yet proposed)    View
57087  CVE-2012-3844  Candidate  Cross-site scripting (XSS) vulnerability in vBulletin 4.1.12 allows remote attackers to inject arbitrary web script or HTML via a long string in the subject parameter when creating a post.  Assigned (20120703)  None (candidate not yet proposed)    View
57343  CVE-2012-4100  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120731)  None (candidate not yet proposed)    View
57599  CVE-2012-4356  Candidate  Multiple directory traversal vulnerabilities in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 allow remote attackers to read arbitrary files via port-46824 TCP packets specifying a file-open operation with opcode 0x78 and a .. (dot dot) in a pathname, followed by a file-read operation with opcode (1) 0x96, (2) 0x97, or (3) 0x98.  Assigned (20120819)  None (candidate not yet proposed)    View
57855  CVE-2012-4612  Candidate  Cross-site scripting (XSS) vulnerability in EMC RSA Data Protection Manager Appliance and Software Server 2.7.x and 3.x before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120824)  None (candidate not yet proposed)    View

Page 20937 of 20943, showing 5 records out of 104715 total, starting on record 104681, ending on 104685

Actions