CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42978  CVE-2010-0394  Candidate  PyGIT.py in the Trac Git plugin (trac-git) before 0.0.20080710-3+lenny1 and before 0.0.20090320-1 on Debian GNU/Linux, when enabled in Trac, allows remote attackers to execute arbitrary commands via shell metacharacters in a crafted HTTP query that is used to generate a certain git command.  Assigned (20100127)  None (candidate not yet proposed)    View
43234  CVE-2010-0650  Candidate  WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.  Assigned (20100218)  None (candidate not yet proposed)    View
43490  CVE-2010-0906  Candidate  Unspecified vulnerability in Oracle Secure Backup 10.3.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.  Assigned (20100303)  None (candidate not yet proposed)    View
43746  CVE-2010-1162  Candidate  The release_one_tty function in drivers/char/tty_io.c in the Linux kernel before 2.6.34-rc4 omits certain required calls to the put_pid function, which has unspecified impact and local attack vectors.  Assigned (20100329)  None (candidate not yet proposed)    View
44002  CVE-2010-1418  Candidate  Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary web script or HTML via a FRAME element with a SRC attribute composed of a javascript: sequence preceded by spaces.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 18653 of 20943, showing 5 records out of 104715 total, starting on record 93261, ending on 93265

Actions