CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54280  CVE-2012-1037  Candidate  PHP remote file inclusion vulnerability in front/popup.php in GLPI 0.78 through 0.80.61 allows remote authenticated users to execute arbitrary PHP code via a URL in the sub_type parameter.  Assigned (20120208)  None (candidate not yet proposed)    View
54536  CVE-2012-1293  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in fup in Frams" Fast File EXchange (F*EX, aka fex) before 20111129-2 allow remote attackers to inject arbitrary web script or HTML via the (1) to or (2) from parameters.  Assigned (20120223)  None (candidate not yet proposed)    View
54792  CVE-2012-1549  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120309)  None (candidate not yet proposed)    View
55048  CVE-2012-1805  Candidate  Buffer overflow in the ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 allows remote attackers to execute arbitrary code via long strings in unspecified parameters.  Assigned (20120321)  None (candidate not yet proposed)    View
55304  CVE-2012-2061  Candidate  Cross-site request forgery (CSRF) vulnerability in the Admin tools module for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors involving "not checking tokens."  Assigned (20120404)  None (candidate not yet proposed)    View

Page 717 of 20943, showing 5 records out of 104715 total, starting on record 3581, ending on 3585

Actions