CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57346  CVE-2012-4103  Candidate  ethanalyzer in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedding commands in an unspecified parameter, aka Bug ID CSCtq02686.  Assigned (20120731)  None (candidate not yet proposed)    View
57602  CVE-2012-4359  Candidate  Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 do not validate the return value of the realloc function, which allows remote attackers to cause a denial of service (invalid 0x00 write operation and daemon crash) or possibly have unspecified other impact via a port-46824 TCP packet with a crafted negative integer after the opcode. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4358.  Assigned (20120819)  None (candidate not yet proposed)    View
57858  CVE-2012-4615  Candidate  EMC Smarts Network Configuration Manager (NCM) before 9.1 uses a hardcoded encryption key for the storage of credentials, which allows local users to obtain sensitive information via unspecified vectors.  Assigned (20120824)  None (candidate not yet proposed)    View
58114  CVE-2012-4871  Candidate  Cross-site scripting (XSS) vulnerability in service/graph_html.php in the administrator panel in LiteSpeed Web Server 4.1.11 allows remote attackers to inject arbitrary web script or HTML via the gtitle parameter.  Assigned (20120906)  None (candidate not yet proposed)    View
58370  CVE-2012-5127  Candidate  Integer overflow in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image.  Assigned (20120924)  None (candidate not yet proposed)    View

Page 237 of 20943, showing 5 records out of 104715 total, starting on record 1181, ending on 1185

Actions