CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43532  CVE-2010-0948  Candidate  SQL injection vulnerability in profil.php in Bigforum 4.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20100309)  None (candidate not yet proposed)    View
43788  CVE-2010-1204  Candidate  Search.pm in Bugzilla 2.17.1 through 3.2.6, 3.3.1 through 3.4.6, 3.5.1 through 3.6, and 3.7 allows remote attackers to obtain potentially sensitive time-tracking information via a crafted search URL, related to a "boolean chart search."  Assigned (20100330)  None (candidate not yet proposed)    View
44044  CVE-2010-1460  Candidate  The IBM BladeCenter with Advanced Management Module (AMM) firmware before bpet50g does not properly perform interrupt sharing for USB and iSCSI, which allows remote attackers to cause a denial of service (management module reboot) via TCP packets with malformed application data.  Assigned (20100416)  None (candidate not yet proposed)    View
44300  CVE-2010-1716  Candidate  SQL injection vulnerability in the Agenda Address Book (com_agenda) component 1.0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.  Assigned (20100504)  None (candidate not yet proposed)    View
44556  CVE-2010-1972  Candidate  The default configuration of HP Client Automation (HPCA) Enterprise Infrastructure (aka Radia) allows remote attackers to read log files, and consequently cause a denial of service or have unspecified other impact, via web requests.  Assigned (20100519)  None (candidate not yet proposed)    View

Page 1630 of 20943, showing 5 records out of 104715 total, starting on record 8146, ending on 8150

Actions