CVE List

Id CVE No. Status Description Phase Votes Comments Actions
55040  CVE-2012-1797  Candidate  IBM DB2 9.5 uses world-writable permissions for nodes.reg, which has unspecified impact and attack vectors.  Assigned (20120320)  None (candidate not yet proposed)    View
55296  CVE-2012-2053  Candidate  The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 does not require a password for executing commands as root, which allows local users to gain privileges via the sudo program, as demonstrated by the user account that executes PHP scripts, a different vulnerability than CVE-2012-1777.  Assigned (20120403)  None (candidate not yet proposed)    View
55552  CVE-2012-2309  Candidate  Cross-site scripting (XSS) vulnerability in the Glossify Internal Links Auto SEO module for Drupal 6.x-2.5 and earlier allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120419)  None (candidate not yet proposed)    View
55808  CVE-2012-2565  Candidate  Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach.  Assigned (20120509)  None (candidate not yet proposed)    View
56064  CVE-2012-2821  Candidate  The autofill implementation in Google Chrome before 20.0.1132.43 does not properly display text, which has unspecified impact and remote attack vectors.  Assigned (20120519)  None (candidate not yet proposed)    View

Page 683 of 20943, showing 5 records out of 104715 total, starting on record 3411, ending on 3415

Actions