CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49638  CVE-2011-1726  Candidate  Cross-site scripting (XSS) vulnerability in HP SiteScope 9.54, 10.13, 11.01, and 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20110419)  None (candidate not yet proposed)    View
49894  CVE-2011-1982  Candidate  Microsoft Office 2007 SP2, and 2010 Gold and SP1, does not initialize an unspecified object pointer during the opening of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Office Uninitialized Object Pointer Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50150  CVE-2011-2238  Candidate  Unspecified vulnerability in the Database Vault component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL.  Assigned (20110602)  None (candidate not yet proposed)    View
50406  CVE-2011-2494  Candidate  kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user"s password.  Assigned (20110615)  None (candidate not yet proposed)    View
50662  CVE-2011-2750  Candidate  NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD.  Assigned (20110717)  None (candidate not yet proposed)    View

Page 18927 of 20943, showing 5 records out of 104715 total, starting on record 94631, ending on 94635

Actions