CVE List

Id CVE No. Status Description Phase Votes Comments Actions
48658  CVE-2011-0746  Candidate  Cross-site request forgery (CSRF) vulnerability in Forms/PortForwarding_Edit_1 on the ZyXEL O2 DSL Router Classic allows remote attackers to hijack the authentication of administrators for requests that insert cross-site scripting (XSS) sequences via the PortRule_Name parameter.  Assigned (20110202)  None (candidate not yet proposed)    View
48914  CVE-2011-1002  Candidate  avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.  Assigned (20110214)  None (candidate not yet proposed)    View
49170  CVE-2011-1258  Candidate  Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability."  Assigned (20110304)  None (candidate not yet proposed)    View
49426  CVE-2011-1514  Candidate  The inet service in HP OpenView Storage Data Protector 6.00 through 6.20 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a request containing crafted parameters.  Assigned (20110323)  None (candidate not yet proposed)    View
49682  CVE-2011-1770  Candidate  Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before 2.6.33.14 allows remote attackers to cause a denial of service via a Datagram Congestion Control Protocol (DCCP) packet with an invalid feature options length, which triggers a buffer over-read.  Assigned (20110419)  None (candidate not yet proposed)    View

Page 1488 of 20943, showing 5 records out of 104715 total, starting on record 7436, ending on 7440

Actions