CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
51699 | CVE-2011-3787 | Candidate | phpScheduleIt 1.2.12 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/schedule.template.php and certain other files. | Assigned (20110923) | None (candidate not yet proposed) | View | |
51955 | CVE-2011-4043 | Candidate | Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow. | Assigned (20111013) | None (candidate not yet proposed) | View | |
52211 | CVE-2011-4299 | Candidate | Cross-site scripting (XSS) vulnerability in mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to inject arbitrary web script or HTML via a wiki comment. | Assigned (20111104) | None (candidate not yet proposed) | View | |
52467 | CVE-2011-4555 | Candidate | One Click Orgs before 1.2.3 does not require unique e-mail addresses for user accounts, which allows remote authenticated users to cause a denial of service (login disruption) or spoof votes or comments by selecting a conflicting e-mail address. | Assigned (20111127) | None (candidate not yet proposed) | View | |
52723 | CVE-2011-4811 | Candidate | SQL injection vulnerability in pokaz_podkat.php in BestShopPro allows remote attackers to execute arbitrary SQL commands via the str parameter. | Assigned (20111213) | None (candidate not yet proposed) | View |
Page 18848 of 20943, showing 5 records out of 104715 total, starting on record 94236, ending on 94240