CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47623  CVE-2010-5039  Candidate  SQL injection vulnerability in control/admin_login.php in ScriptsFeed Recipes Listing Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the loginid parameter (aka the UserName field). NOTE: some of these details are obtained from third party information.  Assigned (20111102)  None (candidate not yet proposed)    View
47879  CVE-2010-5295  Candidate  Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in WordPress before 3.0.2 might allow remote attackers to inject arbitrary web script or HTML via a plugin"s author field, which is not properly handled during a Delete Plugin action.  Assigned (20140120)  None (candidate not yet proposed)    View
48135  CVE-2011-0223  Candidate  WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.  Assigned (20101223)  None (candidate not yet proposed)    View
48391  CVE-2011-0479  Candidate  Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly interact with extensions, which allows remote attackers to cause a denial of service via a crafted extension that triggers an uninitialized pointer.  Assigned (20110114)  None (candidate not yet proposed)    View
48647  CVE-2011-0735  Candidate  Cross-site scripting (XSS) vulnerability in Adobe ColdFusion before 9.0.1 CHF1 allows remote attackers to inject arbitrary web script or HTML via vectors involving a "tag script."  Assigned (20110201)  None (candidate not yet proposed)    View

Page 1237 of 20943, showing 5 records out of 104715 total, starting on record 6181, ending on 6185

Actions