CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47586  CVE-2010-5002  Candidate  Cross-site scripting (XSS) vulnerability in modules/slideshowmodule/slideshow.js.php in Exponent CMS 0.97.0 allows remote attackers to inject arbitrary web script or HTML via the u parameter.  Assigned (20111101)  None (candidate not yet proposed)    View
47842  CVE-2010-5258  Candidate  Untrusted search path vulnerability in Adobe Audition 3.0 build 7283.0 allows local users to gain privileges via a Trojan horse Assist.Dll file in the current working directory, as demonstrated by a directory that contains a .ses file. NOTE: some of these details are obtained from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48098  CVE-2011-0186  Candidate  QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted JPEG2000 image.  Assigned (20101223)  None (candidate not yet proposed)    View
48354  CVE-2011-0442  Candidate  The service utility in EMC Avamar 5.x before 5.0.4 uses cleartext to transmit event details in (1) service requests and (2) e-mail messages, which might allow remote attackers to obtain sensitive information by sniffing the network.  Assigned (20110112)  None (candidate not yet proposed)    View
48610  CVE-2011-0698  Candidate  Directory traversal vulnerability in Django 1.1.x before 1.1.4 and 1.2.x before 1.2.5 on Windows might allow remote attackers to read or execute files via a / (slash) character in a key in a session cookie, related to session replays.  Assigned (20110131)  None (candidate not yet proposed)    View

Page 18623 of 20943, showing 5 records out of 104715 total, starting on record 93111, ending on 93115

Actions