CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49382  CVE-2011-1470  Candidate  The Zip extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a ziparchive stream that is not properly handled by the stream_get_contents function.  Assigned (20110319)  None (candidate not yet proposed)    View
49638  CVE-2011-1726  Candidate  Cross-site scripting (XSS) vulnerability in HP SiteScope 9.54, 10.13, 11.01, and 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20110419)  None (candidate not yet proposed)    View
49894  CVE-2011-1982  Candidate  Microsoft Office 2007 SP2, and 2010 Gold and SP1, does not initialize an unspecified object pointer during the opening of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Office Uninitialized Object Pointer Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50150  CVE-2011-2238  Candidate  Unspecified vulnerability in the Database Vault component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL.  Assigned (20110602)  None (candidate not yet proposed)    View
50406  CVE-2011-2494  Candidate  kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user"s password.  Assigned (20110615)  None (candidate not yet proposed)    View

Page 18942 of 20943, showing 5 records out of 104715 total, starting on record 94706, ending on 94710

Actions