CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
55040 | CVE-2012-1797 | Candidate | IBM DB2 9.5 uses world-writable permissions for nodes.reg, which has unspecified impact and attack vectors. | Assigned (20120320) | None (candidate not yet proposed) | View | |
55296 | CVE-2012-2053 | Candidate | The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 does not require a password for executing commands as root, which allows local users to gain privileges via the sudo program, as demonstrated by the user account that executes PHP scripts, a different vulnerability than CVE-2012-1777. | Assigned (20120403) | None (candidate not yet proposed) | View | |
55552 | CVE-2012-2309 | Candidate | Cross-site scripting (XSS) vulnerability in the Glossify Internal Links Auto SEO module for Drupal 6.x-2.5 and earlier allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120419) | None (candidate not yet proposed) | View | |
55808 | CVE-2012-2565 | Candidate | Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach. | Assigned (20120509) | None (candidate not yet proposed) | View | |
56064 | CVE-2012-2821 | Candidate | The autofill implementation in Google Chrome before 20.0.1132.43 does not properly display text, which has unspecified impact and remote attack vectors. | Assigned (20120519) | None (candidate not yet proposed) | View |
Page 683 of 20943, showing 5 records out of 104715 total, starting on record 3411, ending on 3415