CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58372  CVE-2012-5129  Candidate  Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58628  CVE-2012-5385  Candidate  install/index.php in Craig Knudsen WebCalendar before 1.2.5 allows remote attackers to modify settings.php and possibly execute arbitrary code via vectors related to the user theme preference.  Assigned (20121011)  None (candidate not yet proposed)    View
58884  CVE-2012-5641  Candidate  Directory traversal vulnerability in the partition2 function in mochiweb_util.erl in MochiWeb before 2.4.0, as used in Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1, allows remote attackers to read arbitrary files via a .. (dot dot backslash) in the default URI.  Assigned (20121024)  None (candidate not yet proposed)    View
59140  CVE-2012-5897  Candidate  The (1) SimpleTree and (2) ReportTree classees in the ARDoc ActiveX control (ARDoc.dll) in Quest InTrust 10.4.0.853 and earlier do not properly implement the SaveToFile method, which allows remote attackers to write or overwrite arbitrary files via the bstrFileName argument.  Assigned (20121117)  None (candidate not yet proposed)    View
59396  CVE-2012-6153  Candidate  http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5783.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 399 of 20943, showing 5 records out of 104715 total, starting on record 1991, ending on 1995

Actions