CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
57091 | CVE-2012-3848 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to d4d/exporters.php, (2) the HTTP Referer header to d4d/exporters.php, or (3) unspecified input to d4d/contextMenu.php. | Assigned (20120706) | None (candidate not yet proposed) | View | |
57347 | CVE-2012-4104 | Candidate | Absolute path traversal vulnerability in the image-download process in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to overwrite or delete arbitrary files via a full pathname in an image header, aka Bug ID CSCtq02706. | Assigned (20120731) | None (candidate not yet proposed) | View | |
57603 | CVE-2012-4360 | Candidate | Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.10.19.1 through 0.10.22.4 for the Apache HTTP Server allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20120820) | None (candidate not yet proposed) | View | |
57859 | CVE-2012-4616 | Candidate | Directory traversal vulnerability in the Web UI in EMC Data Protection Advisor (DPA) 5.6 through SP1, 5.7 through SP1, and 5.8 through SP4 allows remote attackers to read arbitrary files via unspecified vectors. | Assigned (20120824) | None (candidate not yet proposed) | View | |
58115 | CVE-2012-4872 | Candidate | Cross-site scripting (XSS) vulnerability in Tickets/Submit in Kayako Fusion before 4.40.985 allows remote attackers to inject arbitrary web script or HTML via certain vectors, possibly a crafted ticket description. | Assigned (20120906) | None (candidate not yet proposed) | View |
Page 924 of 20943, showing 5 records out of 104715 total, starting on record 4616, ending on 4620