CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58371  CVE-2012-5128  Candidate  Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, does not properly perform write operations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.  Assigned (20120924)  None (candidate not yet proposed)    View
58627  CVE-2012-5384  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Craig Knudsen WebCalendar allow remote attackers to inject arbitrary web script or HTML via the (1) $name or (2) $description variables in edit_entry_handler.php, or (3) $url, (4) $tempfullname, or (5) $ext_users[] variables in view_entry.php, different vectors than CVE-2012-0846.  Assigned (20121011)  None (candidate not yet proposed)    View
58883  CVE-2012-5640  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20121024)  None (candidate not yet proposed)    View
59139  CVE-2012-5896  Candidate  The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an "uninitialized pointer."  Assigned (20121117)  None (candidate not yet proposed)    View
59395  CVE-2012-6152  Candidate  The Yahoo! protocol plugin in libpurple in Pidgin before 2.10.8 does not properly validate UTF-8 data, which allows remote attackers to cause a denial of service (application crash) via crafted byte sequences.  Assigned (20121206)  None (candidate not yet proposed)    View

Page 925 of 20943, showing 5 records out of 104715 total, starting on record 4621, ending on 4625

Actions