Page(s) : 1 ... 286 287 288 289 290 291 292 293 294 295 [296] 297 298 299 300 301 302 303 304 305 306 ... | Result(s) : 9848 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
3.5 | 2012-11-01 | CVE-2012-5704 | cve | The Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the "administer hotblocks" permission to cause a denial of service (infinite loop a... |
2.1 | 2012-11-01 | CVE-2012-5705 | cve | Cross-site scripting (XSS) vulnerability in the settings page (admin/settings/hotblocks) in the Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated us... |
3.3 | 2012-10-31 | CVE-2012-4610 | cve | EMC Avamar Client for VMware 6.1 stores the cleartext server root password on the proxy client, which might allow remote attackers to obtain sensitive information by leveraging ... |
3.5 | 2012-10-31 | CVE-2012-4934 | cve | TomatoCart 1.1.7, when the PayPal Express Checkout module is enabled in sandbox mode, allows remote authenticated users to bypass intended payment requirements by modifying a ce... |
2.7 | 2012-10-31 | CVE-2012-2625 | cve | The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x allows local para-virtualized guest users to cause a denial of service (memory consu... |
2.1 | 2012-10-31 | CVE-2012-4492 | cve | Multiple cross-site scripting (XSS) vulnerabilities in the Shorten URLs module 6.x-1.x before 6.x-1.13 and 7.x-1.x before 7.x-1.2 for Drupal allow remote authenticated users wit... |
2.1 | 2012-10-31 | CVE-2012-4496 | cve | Cross-site scripting (XSS) vulnerability in the Custom Publishing Options module 6.x-1.x before 6.x-1.4 for Drupal allows remote authenticated users with the "administer nodes" ... |
3.5 | 2012-10-31 | CVE-2012-4500 | cve | The Announcements module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the "access announcements" permission to bypass node access restrictions and po... |
2.1 | 2012-10-31 | CVE-2012-4544 | cve | The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators t... |
3.5 | 2012-10-30 | VU#207540 | VU-CERT | TomatoCart with PayPal Express Checkout design flaw vulnerability |
3.5 | 2012-10-25 | CVE-2012-5339 | cve | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.3 allow remote authenticated users to inject arbitrary web script or HTML via a crafted name o... |
3.5 | 2012-10-24 | CVE-2012-5388 | cve | Cross-site scripting (XSS) vulnerability in wlcms-plugin.php in the White Label CMS plugin 1.5 for WordPress allows remote authenticated administrators to inject arbitrary web s... |
2.1 | 2012-10-22 | CVE-2012-2679 | cve | Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-readable) for /var/log/rhncfg-actions, which allows local user... |
3.6 | 2012-10-22 | CVE-2012-4518 | cve | ibacm 1.0.7 creates files with world-writable permissions, which allows local users to overwrite the ib_acm daemon log or ibacm.port file. |
2.1 | 2012-10-18 | CVE-2012-2284 | cve | The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375, when Exchange Server is... |
2.1 | 2012-10-17 | CVE-2012-3217 | cve | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7.0 allows context-dependent attackers to affect availability, related to... |
2.1 | 2012-10-17 | CVE-2012-3221 | cve | Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 3.2, 4.0, and 4.1 allows local users to affect availability via unknown vectors related... |
2.1 | 2012-10-17 | CVE-2012-3223 | cve | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, and 6.0.1 allows... |
3.5 | 2012-10-17 | CVE-2012-3224 | cve | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.1.0, 5.2.0, and 5.3.0 through 5.3.4 allows remote authenticated... |
3.6 | 2012-10-17 | CVE-2012-3225 | cve | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.3.0 through 5.3.4 allows remote authenticated users to affect c... |
Page(s) : 1 ... 286 287 288 289 290 291 292 293 294 295 [296] 297 298 299 300 301 302 303 304 305 306 ... | Result(s) : 9848 |