CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49428  CVE-2011-1516  Candidate  The kSBXProfileNoNetwork and kSBXProfileNoInternet sandbox profiles in Apple Mac OS X 10.5.x through 10.7.x do not propagate restrictions to all created processes, which allows remote attackers to access network resources via a crafted application, as demonstrated by use of osascript to send Apple events to the launchd daemon, a related issue to CVE-2008-7303.  Assigned (20110323)  None (candidate not yet proposed)    View
49684  CVE-2011-1772  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute of an s:submit element, or (3) the method attribute of an s:submit element.  Assigned (20110419)  None (candidate not yet proposed)    View
49940  CVE-2011-2028  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110510)  None (candidate not yet proposed)    View
50196  CVE-2011-2284  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise HRMS component in Oracle PeopleSoft Products 9.0 Bundle #17 allows remote authenticated users to affect confidentiality via unknown vectors related to ePerformance.  Assigned (20110602)  None (candidate not yet proposed)    View
50452  CVE-2011-2540  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110627)  None (candidate not yet proposed)    View

Page 1642 of 20943, showing 5 records out of 104715 total, starting on record 8206, ending on 8210

Actions