CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58115  CVE-2012-4872  Candidate  Cross-site scripting (XSS) vulnerability in Tickets/Submit in Kayako Fusion before 4.40.985 allows remote attackers to inject arbitrary web script or HTML via certain vectors, possibly a crafted ticket description.  Assigned (20120906)  None (candidate not yet proposed)    View
58371  CVE-2012-5128  Candidate  Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, does not properly perform write operations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58627  CVE-2012-5384  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Craig Knudsen WebCalendar allow remote attackers to inject arbitrary web script or HTML via the (1) $name or (2) $description variables in edit_entry_handler.php, or (3) $url, (4) $tempfullname, or (5) $ext_users[] variables in view_entry.php, different vectors than CVE-2012-0846.  Assigned (20121011)  None (candidate not yet proposed)    View
58883  CVE-2012-5640  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121024)  None (candidate not yet proposed)    View
59139  CVE-2012-5896  Candidate  The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an "uninitialized pointer."  Assigned (20121117)  None (candidate not yet proposed)    View

Page 341 of 20943, showing 5 records out of 104715 total, starting on record 1701, ending on 1705

Actions