CVE List

Id CVE No. Status Description Phase Votes Comments Actions
48102  CVE-2011-0190  Candidate  Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server.  Assigned (20101223)  None (candidate not yet proposed)    View
48358  CVE-2011-0446  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the mail_to helper in Ruby on Rails before 2.3.11, and 3.x before 3.0.4, when javascript encoding is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) name or (2) email value.  Assigned (20110113)  None (candidate not yet proposed)    View
48614  CVE-2011-0702  Candidate  The feh_unique_filename function in utils.c in feh before 1.11.2 might allow local users to overwrite arbitrary files via a symlink attack on a /tmp/feh_ temporary file.  Assigned (20110131)  None (candidate not yet proposed)    View
48870  CVE-2011-0958  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110210)  None (candidate not yet proposed)    View
49126  CVE-2011-1214  Candidate  Stack-based buffer overflow in rtfsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted link in a .rtf attachment, aka SPR PRAD8823JQ.  Assigned (20110303)  None (candidate not yet proposed)    View

Page 18941 of 20943, showing 5 records out of 104715 total, starting on record 94701, ending on 94705

Actions