CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51690  CVE-2011-3778  Candidate  PhpGedView 4.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by serviceClientTest.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51946  CVE-2011-4034  Candidate  Buffer overflow in the Steema TeeChart ActiveX control, as used in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier, allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors.  Assigned (20111013)  None (candidate not yet proposed)    View
52202  CVE-2011-4290  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in lib/weblib.php in Moodle 1.9.x before 1.9.12 allow remote attackers to inject arbitrary web script or HTML via vectors related to URL encoding.  Assigned (20111104)  None (candidate not yet proposed)    View
52458  CVE-2011-4546  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111123)  None (candidate not yet proposed)    View
52714  CVE-2011-4802  Candidate  Multiple SQL injection vulnerabilities in Dolibarr 3.1.0 RC and probably earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) sortfield, (2) sortorder, and (3) sall parameters to user/index.php and (b) user/group/index.php; the id parameter to (4) info.php, (5) perms.php, (6) param_ihm.php, (7) note.php, and (8) fiche.php in user/; and (9) rowid parameter to admin/boxes.php.  Assigned (20111213)  None (candidate not yet proposed)    View

Page 18652 of 20943, showing 5 records out of 104715 total, starting on record 93256, ending on 93260

Actions