CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
43285 | CVE-2010-0701 | Candidate | SQL injection vulnerability in ForceChangePassword.jsp in Newgen Software OmniDocs allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | Assigned (20100223) | None (candidate not yet proposed) | View | |
43541 | CVE-2010-0957 | Candidate | Directory traversal vulnerability in content.php in Saskia"s Shopsystem beta1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the id parameter. | Assigned (20100309) | None (candidate not yet proposed) | View | |
43797 | CVE-2010-1213 | Candidate | The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 does not verify that content is valid JavaScript code, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted HTML document. | Assigned (20100330) | None (candidate not yet proposed) | View | |
44053 | CVE-2010-1469 | Candidate | Directory traversal vulnerability in the Ternaria Informatica JProject Manager (com_jprojectmanager) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. | Assigned (20100419) | None (candidate not yet proposed) | View | |
44309 | CVE-2010-1725 | Candidate | SQL injection vulnerability in offers_buy.php in Alibaba Clone Platinum allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20100505) | None (candidate not yet proposed) | View |
Page 1755 of 20943, showing 5 records out of 104715 total, starting on record 8771, ending on 8775