Index: vuln.xml =================================================================== RCS file: /home/pcvs/ports/security/vuxml/vuln.xml,v retrieving revision 1.2692 diff -u -r1.2692 vuln.xml --- vuln.xml 11 May 2012 08:53:19 -0000 1.2692 +++ vuln.xml 12 May 2012 14:13:38 -0000 @@ -52,6 +52,36 @@ --> + + PivotX -- 'ajaxhelper.php' Cross Site Scripting Vulnerability + + + pivotx + 2.3.2 + + + + +

High-Tech Bridge reports:

+
+

Input passed via the "file" GET parameter to + /pivotx/ajaxhelper.php is not properly sanitised before + being returned to the user. This can be exploited to + execute arbitrary HTML and script code in administrator's + browser session in context of the affected website.

+
+ +
+ + CVE-2012-2274 + 52159 + + + 2012-05-09 + 2012-05-12 + +
+ NVIDIA UNIX driver -- access to arbitrary system memory