CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44300  CVE-2010-1716  Candidate  SQL injection vulnerability in the Agenda Address Book (com_agenda) component 1.0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.  Assigned (20100504)  None (candidate not yet proposed)    View
44556  CVE-2010-1972  Candidate  The default configuration of HP Client Automation (HPCA) Enterprise Infrastructure (aka Radia) allows remote attackers to read log files, and consequently cause a denial of service or have unspecified other impact, via web requests.  Assigned (20100519)  None (candidate not yet proposed)    View
44812  CVE-2010-2228  Candidate  Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username.  Assigned (20100609)  None (candidate not yet proposed)    View
45068  CVE-2010-2484  Candidate  The strrchr function in PHP 5.2 before 5.2.14 allows context-dependent attackers to obtain sensitive information (memory contents) or trigger memory corruption by causing a userspace interruption of an internal function or handler.  Assigned (20100628)  None (candidate not yet proposed)    View
45324  CVE-2010-2740  Candidate  The OpenType Font (OTF) format driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly perform memory allocation during font parsing, which allows local users to gain privileges via a crafted application, aka "OpenType Font Parsing Vulnerability."  Assigned (20100714)  None (candidate not yet proposed)    View

Page 1020 of 20943, showing 5 records out of 104715 total, starting on record 5096, ending on 5100

Actions