CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43265  CVE-2010-0681  Candidate  ZeusCMS 0.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request for admin/backup.sql.  Assigned (20100222)  None (candidate not yet proposed)    View
43521  CVE-2010-0937  Candidate  Multiple unspecified vulnerabilities in Visualization Library before 2009.08.812 have unknown impact and attack vectors.  Assigned (20100308)  None (candidate not yet proposed)    View
43777  CVE-2010-1193  Candidate  Cross-site scripting (XSS) vulnerability in WebAccess in VMware Server 2.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to JSON error messages.  Assigned (20100330)  None (candidate not yet proposed)    View
44033  CVE-2010-1449  Candidate  Integer overflow in rgbimgmodule.c in the rgbimg module in Python 2.5 allows remote attackers to have an unspecified impact via a large image that triggers a buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-3143.12.  Assigned (20100415)  None (candidate not yet proposed)    View
44289  CVE-2010-1705  Candidate  SQL injection vulnerability in casting_view.php in Modelbook allows remote attackers to execute arbitrary SQL commands via the adnum parameter.  Assigned (20100504)  None (candidate not yet proposed)    View

Page 1298 of 20943, showing 5 records out of 104715 total, starting on record 6486, ending on 6490

Actions