CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45795  CVE-2010-3211  Candidate  Multiple SQL injection vulnerabilities in the JE FAQ Pro (com_jefaqpro) component 1.5.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via category categorylist operations with (1) the catid parameter or (2) the catid parameter in a lists action.  Assigned (20100903)  None (candidate not yet proposed)    View
46051  CVE-2010-3467  Candidate  SQL injection vulnerability in modules/sections/index.php in E-Xoopport Samsara 3.1 and earlier, when the Tutorial module is enabled, allows remote attackers to execute arbitrary SQL commands via the secid parameter in a listarticles action.  Assigned (20100917)  None (candidate not yet proposed)    View
46307  CVE-2010-3723  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101001)  None (candidate not yet proposed)    View
46563  CVE-2010-3979  Candidate  Dswsbobje in SAP BusinessObjects Enterprise XI 3.2 generates different error messages depending on whether the Login field corresponds to a valid username, which allows remote attackers to enumerate account names via a login SOAPAction to the dswsbobje/services/session URI.  Assigned (20101018)  None (candidate not yet proposed)    View
46819  CVE-2010-4235  Candidate  Format string vulnerability in RealNetworks Helix Server 12.x, 13.x, and 14.x before 14.2, and Helix Mobile Server 12.x, 13.x, and 14.x before 14.2, allows remote attackers to execute arbitrary code via vectors related to the x-wap-profile HTTP header.  Assigned (20101111)  None (candidate not yet proposed)    View

Page 18683 of 20943, showing 5 records out of 104715 total, starting on record 93411, ending on 93415

Actions