CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55558  CVE-2012-2315  Candidate  admin/Auth in OpenKM 5.1.7 and other versions before 5.1.8-2 does not properly enforce privileges for changing user roles, which allows remote authenticated users to assign administrator privileges to arbitrary users via the userEdit action.  Assigned (20120419)  None (candidate not yet proposed)    View
55814  CVE-2012-2571  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in WinWebMail Server 3.8.1.6 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with (1) a SCRIPT element, (2) a crafted Cascading Style Sheets (CSS) expression property, (3) a CSS expression property in the STYLE attribute of an arbitrary element, (4) a crafted SRC attribute of an IFRAME element, or (5) UTF-7 text in an HTTP-EQUIV="CONTENT-TYPE" META element.  Assigned (20120509)  None (candidate not yet proposed)    View
56070  CVE-2012-2827  Candidate  Use-after-free vulnerability in the UI in Google Chrome before 20.0.1132.43 on Mac OS X allows attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.  Assigned (20120519)  None (candidate not yet proposed)    View
56326  CVE-2012-3083  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120530)  None (candidate not yet proposed)    View
56582  CVE-2012-3339  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120607)  None (candidate not yet proposed)    View

Page 553 of 20943, showing 5 records out of 104715 total, starting on record 2761, ending on 2765

Actions