CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44812  CVE-2010-2228  Candidate  Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username.  Assigned (20100609)  None (candidate not yet proposed)    View
45068  CVE-2010-2484  Candidate  The strrchr function in PHP 5.2 before 5.2.14 allows context-dependent attackers to obtain sensitive information (memory contents) or trigger memory corruption by causing a userspace interruption of an internal function or handler.  Assigned (20100628)  None (candidate not yet proposed)    View
45324  CVE-2010-2740  Candidate  The OpenType Font (OTF) format driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly perform memory allocation during font parsing, which allows local users to gain privileges via a crafted application, aka "OpenType Font Parsing Vulnerability."  Assigned (20100714)  None (candidate not yet proposed)    View
45580  CVE-2010-2996  Candidate  Array index error in RealNetworks RealPlayer 11.0 through 11.1 on Windows allows remote attackers to execute arbitrary code via a malformed header in a RealMedia .IVR file.  Assigned (20100813)  None (candidate not yet proposed)    View
45836  CVE-2010-3252  Candidate  Use-after-free vulnerability in the Notifications presenter in Google Chrome before 6.0.472.53 allows attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.  Assigned (20100907)  None (candidate not yet proposed)    View

Page 1631 of 20943, showing 5 records out of 104715 total, starting on record 8151, ending on 8155

Actions