CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46353  CVE-2010-3769  Candidate  The line-breaking implementation in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaMonkey before 2.0.11 on Windows does not properly handle long strings, which allows remote attackers to execute arbitrary code via a crafted document.write call that triggers a buffer over-read.  Assigned (20101005)  None (candidate not yet proposed)    View
46609  CVE-2010-4025  Candidate  Unspecified vulnerability in Doc Viewer in HP Palm webOS 1.4.1 allows remote attackers to execute arbitrary code via a crafted document, as demonstrated by a Word document.  Assigned (20101021)  None (candidate not yet proposed)    View
46865  CVE-2010-4281  Candidate  Incomplete blacklist vulnerability in the safe_url_extraclean function in ajax.php in Pandora FMS before 3.1.1 allows remote attackers to execute arbitrary PHP code by using a page parameter containing a UNC share pathname, which bypasses the check for the : (colon) character.  Assigned (20101117)  None (candidate not yet proposed)    View
47121  CVE-2010-4537  Candidate  Unspecified vulnerability in CrawlTrack before 3.2.7, when a public stats page is provided, allows remote attackers to execute arbitrary PHP code via unknown vectors.  Assigned (20101209)  None (candidate not yet proposed)    View
47377  CVE-2010-4793  Candidate  SQL injection vulnerability in detail.asp in Site2Nite Auto e-Manager allows remote attackers to execute arbitrary SQL commands via the ID parameter.  Assigned (20110426)  None (candidate not yet proposed)    View

Page 1409 of 20943, showing 5 records out of 104715 total, starting on record 7041, ending on 7045

Actions