CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47382 | CVE-2010-4798 | Candidate | Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uri parameter. | Assigned (20110426) | None (candidate not yet proposed) | View | |
47638 | CVE-2010-5054 | Candidate | Cross-site scripting (XSS) vulnerability in Special:Login in JAMWiki before 0.8.4 allows remote attackers to inject arbitrary web script or HTML via the message parameter. | Assigned (20111122) | None (candidate not yet proposed) | View | |
47894 | CVE-2010-5310 | Candidate | The Acquisition Workstation for the GE Healthcare Revolution XQ/i has a password of adw3.1 for the sdc user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value. | Assigned (20140929) | None (candidate not yet proposed) | View | |
48150 | CVE-2011-0238 | Candidate | WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48406 | CVE-2011-0494 | Candidate | Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 5.1 before 5.1.0.39-TIV-AWS-IF0040, 6.0 before 6.0.0.25-TIV-AWS-IF0026, 6.1.0 before 6.1.0.5-TIV-AWS-IF0006, and 6.1.1 before 6.1.1-TIV-AWS-FP0001 has unspecified impact and attack vectors. NOTE: this might overlap CVE-2010-4622. | Assigned (20110118) | None (candidate not yet proposed) | View |
Page 1816 of 20943, showing 5 records out of 104715 total, starting on record 9076, ending on 9080