CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46355  CVE-2010-3771  Candidate  Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly handle injection of an ISINDEX element into an about:blank page, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via vectors related to redirection to a chrome: URI.  Assigned (20101005)  None (candidate not yet proposed)    View
46611  CVE-2010-4027  Candidate  Unspecified vulnerability in the camera application in HP Palm webOS 1.4.1 allows local users to overwrite arbitrary files via unknown vectors.  Assigned (20101021)  None (candidate not yet proposed)    View
46867  CVE-2010-4283  Candidate  PHP remote file inclusion vulnerability in extras/pandora_diag.php in Pandora FMS before 3.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the argv[1] parameter.  Assigned (20101117)  None (candidate not yet proposed)    View
47123  CVE-2010-4539  Candidate  The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.  Assigned (20101209)  None (candidate not yet proposed)    View
47379  CVE-2010-4795  Candidate  SQL injection vulnerability in the JS Calendar (com_jscalendar) component 1.5.1 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the ev_id parameter in a details action to index.php. NOTE: some of these details are obtained from third party information.  Assigned (20110426)  None (candidate not yet proposed)    View

Page 1576 of 20943, showing 5 records out of 104715 total, starting on record 7876, ending on 7880

Actions