CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46050  CVE-2010-3466  Candidate  Cross-site scripting (XSS) vulnerability in index.php in the hosted_signup module in NetArt Media iBoutique.MALL 1.2 allows remote attackers to inject arbitrary web script or HTML via the tmpl parameter. NOTE: some of these details are obtained from third party information.  Assigned (20100917)  None (candidate not yet proposed)    View
46306  CVE-2010-3722  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101001)  None (candidate not yet proposed)    View
46562  CVE-2010-3978  Candidate  Spree 0.11.x before 0.11.2 and 0.30.x before 0.30.0 exchanges data using JavaScript Object Notation (JSON) without a mechanism for validating requests, which allows remote attackers to obtain sensitive information via vectors involving (1) admin/products.json, (2) admin/users.json, or (3) admin/overview/get_report_data, related to a "JSON hijacking" issue.  Assigned (20101018)  None (candidate not yet proposed)    View
46818  CVE-2010-4234  Candidate  The web server on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to cause a denial of service (device reboot) via a large number of requests in a short time interval.  Assigned (20101111)  None (candidate not yet proposed)    View
47074  CVE-2010-4490  Candidate  Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via malformed video content that triggers an indexing error.  Assigned (20101207)  None (candidate not yet proposed)    View

Page 18602 of 20943, showing 5 records out of 104715 total, starting on record 93006, ending on 93010

Actions