CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44310  CVE-2010-1726  Candidate  SQL injection vulnerability in offers_buy.php in EC21 Clone 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20100505)  None (candidate not yet proposed)    View
44566  CVE-2010-1982  Candidate  Directory traversal vulnerability in the JA Voice (com_javoice) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.  Assigned (20100519)  None (candidate not yet proposed)    View
44822  CVE-2010-2238  Candidate  Red Hat libvirt, possibly 0.7.2 through 0.8.2, recurses into disk-image backing stores without extracting the defined disk backing-store format, which might allow guest OS users to read arbitrary files on the host OS, and possibly have unspecified other impact, via unknown vectors.  Assigned (20100609)  None (candidate not yet proposed)    View
45078  CVE-2010-2494  Candidate  Multiple buffer underflows in the base64 decoder in base64.c in (1) bogofilter and (2) bogolexer in bogofilter before 1.2.2 allow remote attackers to cause a denial of service (heap memory corruption and application crash) via an e-mail message with invalid base64 data that begins with an = (equals) character.  Assigned (20100628)  None (candidate not yet proposed)    View
45334  CVE-2010-2750  Candidate  Array index error in Microsoft Word 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via a crafted Word document that triggers memory corruption, aka "Word Index Vulnerability."  Assigned (20100714)  None (candidate not yet proposed)    View

Page 1792 of 20943, showing 5 records out of 104715 total, starting on record 8956, ending on 8960

Actions