CVE List

Id CVE No. Status Description Phase Votes Comments Actions
54281  CVE-2012-1038  Candidate  Cross-site scripting (XSS) vulnerability in the WebAAA login functionality (wba_login.html) in Juniper Networks Mobility System Software (MSS) 7.6.x before 7.6.3, 7.7.x before 7.7.1, 7.5.x before 7.5.3, and other unspecified versions before 7.4 and 7.3 allows remote attackers to inject arbitrary web script or HTML via a crafted parameter name.  Assigned (20120208)  None (candidate not yet proposed)    View
54537  CVE-2012-1294  Candidate  SQL injection vulnerability in CONTIMEX Impulsio CMS allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.  Assigned (20120223)  None (candidate not yet proposed)    View
54793  CVE-2012-1550  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120309)  None (candidate not yet proposed)    View
55049  CVE-2012-1806  Candidate  The ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECOM, H2-ECOM-F, H2-ECOM100, H4-ECOM, H4-ECOM-F, and H4-ECOM100 supports a maximum password length of 8 bytes, which makes it easier for remote attackers to obtain access via a brute-force attack.  Assigned (20120321)  None (candidate not yet proposed)    View
55305  CVE-2012-2062  Candidate  Open redirect vulnerability in the Redirecting click bouncer module for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.  Assigned (20120404)  None (candidate not yet proposed)    View

Page 798 of 20943, showing 5 records out of 104715 total, starting on record 3986, ending on 3990

Actions