CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44773  CVE-2010-2189  Candidate  Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when used in conjunction with VMWare Tools on a VMWare platform, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.  Assigned (20100607)  None (candidate not yet proposed)    View
45029  CVE-2010-2445  Candidate  freeciv 2.2 before 2.2.1 and 2.3 before 2.3.0 allows attackers to read arbitrary files or execute arbitrary commands via a scenario that contains Lua functionality, related to the (1) os, (2) io, (3) package, (4) dofile, (5) loadfile, (6) loadlib, (7) module, and (8) require modules or functions.  Assigned (20100624)  None (candidate not yet proposed)    View
45285  CVE-2010-2701  Candidate  Multiple buffer overflows in the FathFTP ActiveX control 1.7 allow remote attackers to execute arbitrary code via (1) the GetFromURL member or (2) a long argument to the RasIsConnected method.  Assigned (20100712)  None (candidate not yet proposed)    View
45541  CVE-2010-2957  Candidate  Cross-site scripting (XSS) vulnerability in Serendipity before 1.5.4, when "Remember me" logins are enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20100804)  None (candidate not yet proposed)    View
45797  CVE-2010-3213  Candidate  Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows remote attackers to hijack the authentication of e-mail users for requests that perform Outlook requests, as demonstrated by setting the auto-forward rule.  Assigned (20100903)  None (candidate not yet proposed)    View

Page 18886 of 20943, showing 5 records out of 104715 total, starting on record 94426, ending on 94430

Actions