CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46868  CVE-2010-4284  Candidate  SQL injection vulnerability in the authentication form in the integrated web server in the Data Management Server (DMS) before 1.4.3 in Samsung Integrated Management System allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20101117)  None (candidate not yet proposed)    View
47124  CVE-2010-4540  Candidate  Stack-based buffer overflow in the load_preset_response function in plug-ins/lighting/lighting-ui.c in the "LIGHTING EFFECTS > LIGHT" plugin in GIMP 2.6.11 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long Position field in a plugin configuration file. NOTE: it may be uncommon to obtain a GIMP plugin configuration file from an untrusted source that is separate from the distribution of the plugin itself. NOTE: some of these details are obtained from third party information.  Assigned (20101209)  None (candidate not yet proposed)    View
47380  CVE-2010-4796  Candidate  Multiple SQL injection vulnerabilities in PHPYun 1.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) provinceid parameter to search.php and the (2) e parameter to resumeview.php.  Assigned (20110426)  None (candidate not yet proposed)    View
47636  CVE-2010-5052  Candidate  Cross-site scripting (XSS) vulnerability in admin/components.php in GetSimple CMS 2.01 allows remote attackers to inject arbitrary web script or HTML via the val[] parameter.  Assigned (20111122)  None (candidate not yet proposed)    View
47892  CVE-2010-5308  Candidate  GE Healthcare Optima MR360 does not require authentication for the HIPAA emergency login procedure, which allows physically proximate users to gain access via an arbitrary username in the Emergency Login screen. NOTE: this might not qualify for inclusion in CVE if unauthenticated emergency access is part of the intended security policy of the product, can be controlled by the system administrator, and is not enabled by default.  Assigned (20140929)  None (candidate not yet proposed)    View

Page 1640 of 20943, showing 5 records out of 104715 total, starting on record 8196, ending on 8200

Actions