CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54273  CVE-2012-1030  Candidate  Cross-site scripting (XSS) vulnerability in DotNetNuke 6.x through 6.0.2 allows user-assisted remote attackers to inject arbitrary web script or HTML via a crafted URL containing text that is used within a modal popup.  Assigned (20120207)  None (candidate not yet proposed)    View
54529  CVE-2012-1286  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120222)  None (candidate not yet proposed)    View
54785  CVE-2012-1542  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120308)  None (candidate not yet proposed)    View
55041  CVE-2012-1798  Candidate  The TIFFGetEXIFProperties function in coders/tiff.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted EXIF IFD in a TIFF image.  Assigned (20120321)  None (candidate not yet proposed)    View
55297  CVE-2012-2054  Candidate  Redmine before 1.3.2 does not properly restrict the use of a hash to provide values for a model"s attributes, which allows remote attackers to set attributes in the (1) Comment, (2) Document, (3) IssueCategory, (4) MembersController, (5) Message, (6) News, (7) TimeEntry, (8) Version, (9) Wiki, (10) UserPreference, or (11) Board model via a modified URL, related to a "mass assignment" vulnerability, a different vulnerability than CVE-2012-0327.  Assigned (20120404)  None (candidate not yet proposed)    View

Page 762 of 20943, showing 5 records out of 104715 total, starting on record 3806, ending on 3810

Actions