CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51731  CVE-2011-3819  Candidate  WoW Server Status 4.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by status.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51987  CVE-2011-4075  Candidate  The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a query_engine action to cmd.php, as exploited in the wild in October 2011.  Assigned (20111018)  None (candidate not yet proposed)    View
52243  CVE-2011-4331  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4110. Reason: This candidate is a duplicate of CVE-2011-4110. Notes: All CVE users should reference CVE-2011-4110 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20111104)  None (candidate not yet proposed)    View
52499  CVE-2011-4587  Candidate  lib/moodlelib.php in Moodle 1.9.x before 1.9.15, 2.0.x before 2.0.6, and 2.1.x before 2.1.3 does not properly handle certain zero values in the password policy, which makes it easier for remote attackers to obtain access by leveraging the possible existence of user accounts that have unchangeable blank passwords.  Assigned (20111129)  None (candidate not yet proposed)    View
52755  CVE-2011-4843  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111215)  None (candidate not yet proposed)    View

Page 1567 of 20943, showing 5 records out of 104715 total, starting on record 7831, ending on 7835

Actions