CVE List

Id CVE No. Status Description Phase Votes Comments Actions
50419  CVE-2011-2507  Candidate  libraries/server_synchronize.lib.php in the Synchronize implementation in phpMyAdmin 3.x before 3.3.10.2 and 3.4.x before 3.4.3.1 does not properly quote regular expressions, which allows remote authenticated users to inject a PCRE e (aka PREG_REPLACE_EVAL) modifier, and consequently execute arbitrary PHP code, by leveraging the ability to modify the SESSION superglobal array.  Assigned (20110615)  None (candidate not yet proposed)    View
50675  CVE-2011-2763  Candidate  The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and 4.7.18 allows remote attackers to execute arbitrary commands via a modified request to the LSRoom_Remoting.doCommand function in gateway.php.  Assigned (20110719)  None (candidate not yet proposed)    View
50931  CVE-2011-3019  Candidate  Heap-based buffer overflow in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted Matroska video (aka MKV) file.  Assigned (20110809)  None (candidate not yet proposed)    View
51187  CVE-2011-3275  Candidate  Memory leak in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to cause a denial of service (memory consumption) via a crafted SIP message, aka Bug ID CSCti48504.  Assigned (20110829)  None (candidate not yet proposed)    View
51443  CVE-2011-3531  Candidate  Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 11.1.1.3, 11.1.1.4, and 11.1.1.5 allows remote attackers to affect availability via unknown vectors related to Web Services Security.  Assigned (20110916)  None (candidate not yet proposed)    View

Page 18847 of 20943, showing 5 records out of 104715 total, starting on record 94231, ending on 94235

Actions