CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46867  CVE-2010-4283  Candidate  PHP remote file inclusion vulnerability in extras/pandora_diag.php in Pandora FMS before 3.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the argv[1] parameter.  Assigned (20101117)  None (candidate not yet proposed)    View
47123  CVE-2010-4539  Candidate  The walk function in repos.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.15, allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via vectors that trigger the walking of SVNParentPath collections.  Assigned (20101209)  None (candidate not yet proposed)    View
47379  CVE-2010-4795  Candidate  SQL injection vulnerability in the JS Calendar (com_jscalendar) component 1.5.1 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the ev_id parameter in a details action to index.php. NOTE: some of these details are obtained from third party information.  Assigned (20110426)  None (candidate not yet proposed)    View
47635  CVE-2010-5051  Candidate  Cross-site scripting (XSS) vulnerability in admin/core/admin_func.php in razorCMS 1.0 stable allows remote attackers to inject arbitrary web script or HTML via the content parameter in an edit action to admin/index.php.  Assigned (20111122)  None (candidate not yet proposed)    View
47891  CVE-2010-5307  Candidate  The HIPAA configuration interface in GE Healthcare Optima MR360 has a password of (1) operator for the root account, (2) adw2.0 for the admin account, and (3) adw2.0 for the sdc account, which has unspecified impact and attack vectors. NOTE: it is not clear whether these passwords are default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20140929)  None (candidate not yet proposed)    View

Page 1598 of 20943, showing 5 records out of 104715 total, starting on record 7986, ending on 7990

Actions