CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51728  CVE-2011-3816  Candidate  WEBinsta mailing list manager 1.3e allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by install/install3.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51984  CVE-2011-4072  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2011. Notes: none.  Assigned (20111015)  None (candidate not yet proposed)    View
52240  CVE-2011-4328  Candidate  plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.  Assigned (20111104)  None (candidate not yet proposed)    View
52496  CVE-2011-4584  Candidate  The MNET authentication functionality in Moodle 1.9.x before 1.9.15, 2.0.x before 2.0.6, and 2.1.x before 2.1.3 allows remote authenticated users to impersonate other user accounts by using the Login As feature in conjunction with a remote MNET single sign-on capability, as demonstrated by a Mahara site.  Assigned (20111129)  None (candidate not yet proposed)    View
52752  CVE-2011-4840  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111215)  None (candidate not yet proposed)    View

Page 1731 of 20943, showing 5 records out of 104715 total, starting on record 8651, ending on 8655

Actions