CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45283  CVE-2010-2699  Candidate  SQL injection vulnerability in index.php in Edge PHP Clickbank Affiliate Marketplace Script (CBQuick) allows remote attackers to execute arbitrary SQL commands via the search parameter.  Assigned (20100712)  None (candidate not yet proposed)    View
45539  CVE-2010-2955  Candidate  The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, which allows local users to leverage an off-by-one error in the ioctl_standard_iw_point function in net/wireless/wext-core.c, and obtain potentially sensitive information from kernel heap memory, via vectors involving an SIOCGIWESSID ioctl call that specifies a large buffer size.  Assigned (20100804)  None (candidate not yet proposed)    View
45795  CVE-2010-3211  Candidate  Multiple SQL injection vulnerabilities in the JE FAQ Pro (com_jefaqpro) component 1.5.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via category categorylist operations with (1) the catid parameter or (2) the catid parameter in a lists action.  Assigned (20100903)  None (candidate not yet proposed)    View
46051  CVE-2010-3467  Candidate  SQL injection vulnerability in modules/sections/index.php in E-Xoopport Samsara 3.1 and earlier, when the Tutorial module is enabled, allows remote attackers to execute arbitrary SQL commands via the secid parameter in a listarticles action.  Assigned (20100917)  None (candidate not yet proposed)    View
46307  CVE-2010-3723  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101001)  None (candidate not yet proposed)    View

Page 18732 of 20943, showing 5 records out of 104715 total, starting on record 93656, ending on 93660

Actions