CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52743  CVE-2011-4831  Candidate  Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action.  Assigned (20111214)  None (candidate not yet proposed)    View
52999  CVE-2011-5087  Candidate  Unspecified vulnerability in AdAstrA TRACE MODE Data Center allows remote attackers to read arbitrary files via unknown vectors, as demonstrated by the GLEG Agora SCADA+ Exploit Pack for Immunity CANVAS.  Assigned (20120418)  None (candidate not yet proposed)    View
53255  CVE-2012-0012  Candidate  Microsoft Internet Explorer 9 does not properly handle the creation and initialization of string objects, which allows remote attackers to read data from arbitrary process-memory locations via a crafted web site, aka "Null Byte Information Disclosure Vulnerability."  Assigned (20111109)  None (candidate not yet proposed)    View
53511  CVE-2012-0268  Candidate  Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafted JPG image that triggers a heap-based buffer overflow.  Assigned (20111230)  None (candidate not yet proposed)    View
53767  CVE-2012-0524  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows local users to affect confidentiality and integrity via unknown vectors related to File Processing.  Assigned (20120111)  None (candidate not yet proposed)    View

Page 1241 of 20943, showing 5 records out of 104715 total, starting on record 6201, ending on 6205

Actions