CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44048  CVE-2010-1464  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in WebAsyst Shop-Script FREE allow remote attackers to inject arbitrary web script or HTML via the (1) currency_id_left, (2) currency_id_right, (3) darkcolor, (4) lightcolor, (5) middlecolor, and (6) w parameters.  Assigned (20100416)  None (candidate not yet proposed)    View
44304  CVE-2010-1720  Candidate  SQL injection vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the katid parameter in a qpListele action to index.php.  Assigned (20100504)  None (candidate not yet proposed)    View
44560  CVE-2010-1976  Candidate  Cross-site scripting (XSS) vulnerability in the Taxonomy Breadcrumb module 6.x before 6.x-1.1 for Drupal allows remote authenticated users, with administer taxonomy permissions, to inject arbitrary web script or HTML via the node title in a Breadcrumb display.  Assigned (20100519)  None (candidate not yet proposed)    View
44816  CVE-2010-2232  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100609)  None (candidate not yet proposed)    View
45072  CVE-2010-2488  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100628)  None (candidate not yet proposed)    View

Page 1725 of 20943, showing 5 records out of 104715 total, starting on record 8621, ending on 8625

Actions