CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
44773 | CVE-2010-2189 | Candidate | Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when used in conjunction with VMWare Tools on a VMWare platform, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors. | Assigned (20100607) | None (candidate not yet proposed) | View | |
45029 | CVE-2010-2445 | Candidate | freeciv 2.2 before 2.2.1 and 2.3 before 2.3.0 allows attackers to read arbitrary files or execute arbitrary commands via a scenario that contains Lua functionality, related to the (1) os, (2) io, (3) package, (4) dofile, (5) loadfile, (6) loadlib, (7) module, and (8) require modules or functions. | Assigned (20100624) | None (candidate not yet proposed) | View | |
45285 | CVE-2010-2701 | Candidate | Multiple buffer overflows in the FathFTP ActiveX control 1.7 allow remote attackers to execute arbitrary code via (1) the GetFromURL member or (2) a long argument to the RasIsConnected method. | Assigned (20100712) | None (candidate not yet proposed) | View | |
45541 | CVE-2010-2957 | Candidate | Cross-site scripting (XSS) vulnerability in Serendipity before 1.5.4, when "Remember me" logins are enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20100804) | None (candidate not yet proposed) | View | |
45797 | CVE-2010-3213 | Candidate | Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows remote attackers to hijack the authentication of e-mail users for requests that perform Outlook requests, as demonstrated by setting the auto-forward rule. | Assigned (20100903) | None (candidate not yet proposed) | View |
Page 18886 of 20943, showing 5 records out of 104715 total, starting on record 94426, ending on 94430