CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52740  CVE-2011-4828  Candidate  Unrestricted file upload vulnerability in includes/inline_image_upload.php in AutoSec Tools V-CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in temp/.  Assigned (20111214)  None (candidate not yet proposed)    View
52996  CVE-2011-5084  Candidate  Cross-site scripting (XSS) vulnerability in Movable Type 4.x before 4.36 and 5.x before 5.05 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120402)  None (candidate not yet proposed)    View
53252  CVE-2012-0009  Candidate  Untrusted search path vulnerability in the Windows Object Packager configuration in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a Trojan horse executable file in the current working directory, as demonstrated by a directory that contains a file with an embedded packaged object, aka "Object Packager Insecure Executable Launching Vulnerability."  Assigned (20111109)  None (candidate not yet proposed)    View
53508  CVE-2012-0265  Candidate  Stack-based buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted pathname for a file.  Assigned (20111230)  None (candidate not yet proposed)    View
53764  CVE-2012-0521  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 Bundle #9 allows remote authenticated users to affect confidentiality via unknown vectors related to Human Resources.  Assigned (20120111)  None (candidate not yet proposed)    View

Page 390 of 20943, showing 5 records out of 104715 total, starting on record 1946, ending on 1950

Actions