CVE List

Id CVE No. Status Description Phase Votes Comments Actions
53008  CVE-2011-5096  Candidate  Stack-based buffer overflow in cstore.exe in the Media Application Server (MAS) in Avaya Aura Application Server 5300 (formerly Nortel Media Application Server) 1.x before 1.0.2 and 2.0 before Patch Bundle 10 allows remote attackers to execute arbitrary code via a crafted cs_anams parameter in a CONTENT_STORE_ADMIN_REQ packet.  Assigned (20120703)  None (candidate not yet proposed)    View
53264  CVE-2012-0021  Candidate  The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21, when a threaded MPM is used, does not properly handle a %{}C format string, which allows remote attackers to cause a denial of service (daemon crash) via a cookie that lacks both a name and a value.  Assigned (20111207)  None (candidate not yet proposed)    View
53520  CVE-2012-0277  Candidate  Heap-based buffer overflow in XnView before 1.99 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PCT image.  Assigned (20111230)  None (candidate not yet proposed)    View
53776  CVE-2012-0533  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise FCSM component in Oracle PeopleSoft Products 9.0 and 9.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Receivables.  Assigned (20120111)  None (candidate not yet proposed)    View
54032  CVE-2012-0789  Candidate  Memory leak in the timezone functionality in PHP before 5.3.9 allows remote attackers to cause a denial of service (memory consumption) by triggering many strtotime function calls, which are not properly handled by the php_date_parse_tzfile cache.  Assigned (20120119)  None (candidate not yet proposed)    View

Page 1732 of 20943, showing 5 records out of 104715 total, starting on record 8656, ending on 8660

Actions