CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47887  CVE-2010-5303  Candidate  Cross-site scripting (XSS) vulnerability in the displayError function in timthumb.php in TimThumb before 1.15 (r85), as used in multiple products, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to $errorString.  Assigned (20140821)  None (candidate not yet proposed)    View
48143  CVE-2011-0231  Candidate  CFNetwork in Apple Mac OS X before 10.7.2 does not properly follow an intended cookie-storage policy, which makes it easier for remote web servers to track users via a cookie, related to a "synchronization issue."  Assigned (20101223)  None (candidate not yet proposed)    View
48399  CVE-2011-0487  Candidate  ICQ 7 does not verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a crafted file that is fetched through an automatic-update mechanism.  Assigned (20110118)  None (candidate not yet proposed)    View
48655  CVE-2011-0743  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110202)  None (candidate not yet proposed)    View
48911  CVE-2011-0999  Candidate  mm/huge_memory.c in the Linux kernel before 2.6.38-rc5 does not prevent creation of a transparent huge page (THP) during the existence of a temporary stack for an exec system call, which allows local users to cause a denial of service (memory consumption) or possibly have unspecified other impact via a crafted application.  Assigned (20110214)  None (candidate not yet proposed)    View

Page 1276 of 20943, showing 5 records out of 104715 total, starting on record 6376, ending on 6380

Actions