CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51699  CVE-2011-3787  Candidate  phpScheduleIt 1.2.12 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/schedule.template.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51955  CVE-2011-4043  Candidate  Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.  Assigned (20111013)  None (candidate not yet proposed)    View
52211  CVE-2011-4299  Candidate  Cross-site scripting (XSS) vulnerability in mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to inject arbitrary web script or HTML via a wiki comment.  Assigned (20111104)  None (candidate not yet proposed)    View
52467  CVE-2011-4555  Candidate  One Click Orgs before 1.2.3 does not require unique e-mail addresses for user accounts, which allows remote authenticated users to cause a denial of service (login disruption) or spoof votes or comments by selecting a conflicting e-mail address.  Assigned (20111127)  None (candidate not yet proposed)    View
52723  CVE-2011-4811  Candidate  SQL injection vulnerability in pokaz_podkat.php in BestShopPro allows remote attackers to execute arbitrary SQL commands via the str parameter.  Assigned (20111213)  None (candidate not yet proposed)    View

Page 18848 of 20943, showing 5 records out of 104715 total, starting on record 94236, ending on 94240

Actions