CVE List

Id CVE No. Status Description Phase Votes Comments Actions
50916  CVE-2011-3004  Candidate  The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.  Assigned (20110801)  None (candidate not yet proposed)    View
51172  CVE-2011-3260  Candidate  Buffer overflow in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Microsoft Word document.  Assigned (20110819)  None (candidate not yet proposed)    View
51428  CVE-2011-3516  Candidate  Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 6 Update 27 and earlier, when running on Windows, allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.  Assigned (20110916)  None (candidate not yet proposed)    View
51684  CVE-2011-3772  Candidate  phpCollab 2.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by topics/noti_newtopic.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51940  CVE-2011-4028  Candidate  The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.  Assigned (20111009)  None (candidate not yet proposed)    View

Page 18784 of 20943, showing 5 records out of 104715 total, starting on record 93916, ending on 93920

Actions