CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47382  CVE-2010-4798  Candidate  Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uri parameter.  Assigned (20110426)  None (candidate not yet proposed)    View
47638  CVE-2010-5054  Candidate  Cross-site scripting (XSS) vulnerability in Special:Login in JAMWiki before 0.8.4 allows remote attackers to inject arbitrary web script or HTML via the message parameter.  Assigned (20111122)  None (candidate not yet proposed)    View
47894  CVE-2010-5310  Candidate  The Acquisition Workstation for the GE Healthcare Revolution XQ/i has a password of adw3.1 for the sdc user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20140929)  None (candidate not yet proposed)    View
48150  CVE-2011-0238  Candidate  WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.  Assigned (20101223)  None (candidate not yet proposed)    View
48406  CVE-2011-0494  Candidate  Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 5.1 before 5.1.0.39-TIV-AWS-IF0040, 6.0 before 6.0.0.25-TIV-AWS-IF0026, 6.1.0 before 6.1.0.5-TIV-AWS-IF0006, and 6.1.1 before 6.1.1-TIV-AWS-FP0001 has unspecified impact and attack vectors. NOTE: this might overlap CVE-2010-4622.  Assigned (20110118)  None (candidate not yet proposed)    View

Page 1816 of 20943, showing 5 records out of 104715 total, starting on record 9076, ending on 9080

Actions