CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
49382 | CVE-2011-1470 | Candidate | The Zip extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a ziparchive stream that is not properly handled by the stream_get_contents function. | Assigned (20110319) | None (candidate not yet proposed) | View | |
49638 | CVE-2011-1726 | Candidate | Cross-site scripting (XSS) vulnerability in HP SiteScope 9.54, 10.13, 11.01, and 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20110419) | None (candidate not yet proposed) | View | |
49894 | CVE-2011-1982 | Candidate | Microsoft Office 2007 SP2, and 2010 Gold and SP1, does not initialize an unspecified object pointer during the opening of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Office Uninitialized Object Pointer Vulnerability." | Assigned (20110509) | None (candidate not yet proposed) | View | |
50150 | CVE-2011-2238 | Candidate | Unspecified vulnerability in the Database Vault component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL. | Assigned (20110602) | None (candidate not yet proposed) | View | |
50406 | CVE-2011-2494 | Candidate | kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user"s password. | Assigned (20110615) | None (candidate not yet proposed) | View |
Page 18942 of 20943, showing 5 records out of 104715 total, starting on record 94706, ending on 94710