CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44821  CVE-2010-2237  Candidate  Red Hat libvirt, possibly 0.6.1 through 0.8.2, looks up disk backing stores without referring to the user-defined main disk format, which might allow guest OS users to read arbitrary files on the host OS, and possibly have unspecified other impact, via unknown vectors.  Assigned (20100609)  None (candidate not yet proposed)    View
45077  CVE-2010-2493  Candidate  The default configuration of the deployment descriptor (aka web.xml) in picketlink-sts.war in (1) the security_saml quickstart, (2) the webservice_proxy_security quickstart, (3) the web-console application, (4) the http-invoker application, (5) the gpd-deployer application, (6) the jbpm-console application, (7) the contract application, and (8) the uddi-console application in JBoss Enterprise SOA Platform before 5.0.2 contains GET and POST http-method elements, which allows remote attackers to bypass intended access restrictions via a crafted HTTP request.  Assigned (20100628)  None (candidate not yet proposed)    View
45333  CVE-2010-2749  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100714)  None (candidate not yet proposed)    View
45589  CVE-2010-3005  Candidate  Unspecified vulnerability in HP Operations Agent 7.36 and 8.6 on Windows allows local users to gain privileges via unknown vectors.  Assigned (20100813)  None (candidate not yet proposed)    View
45845  CVE-2010-3261  Candidate  Directory traversal vulnerability in RSA Authentication Agent 7.0 before P2 for Web allows remote attackers to read unspecified data via unknown vectors.  Assigned (20100907)  None (candidate not yet proposed)    View

Page 1734 of 20943, showing 5 records out of 104715 total, starting on record 8666, ending on 8670

Actions