CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47378  CVE-2010-4794  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the JoomlaSeller JS Calendar (com_jscalendar) component 1.5.1 and 1.5.4 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the (1) month and (2) year parameters in a jscalendar action to index.php. NOTE: some of these details are obtained from third party information.  Assigned (20110426)  None (candidate not yet proposed)    View
47634  CVE-2010-5050  Candidate  Cross-site scripting (XSS) vulnerability in jsp/admin/tools/remote_share.jsp in ManageEngine ADManager Plus 4.4.0 allows remote attackers to inject arbitrary web script or HTML via the computerName parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20111122)  None (candidate not yet proposed)    View
47890  CVE-2010-5306  Candidate  GE Healthcare Optima CT680, CT540, CT640, and CT520 has a default password of #bigguy for the root user, which has unspecified impact and attack vectors.  Assigned (20140929)  None (candidate not yet proposed)    View
48146  CVE-2011-0234  Candidate  WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.  Assigned (20101223)  None (candidate not yet proposed)    View
48402  CVE-2011-0490  Candidate  Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha makes calls to Libevent within Libevent log handlers, which might allow remote attackers to cause a denial of service (daemon crash) via vectors that trigger certain log messages.  Assigned (20110118)  None (candidate not yet proposed)    View

Page 1487 of 20943, showing 5 records out of 104715 total, starting on record 7431, ending on 7435

Actions