CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47383  CVE-2010-4799  Candidate  Multiple SQL injection vulnerabilities in Chipmunk Pwngame 1.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters to authenticate.php and the (3) ID parameter to pwn.php. NOTE: some of these details are obtained from third party information.  Assigned (20110426)  None (candidate not yet proposed)    View
47639  CVE-2010-5055  Candidate  SQL injection vulnerability in index.php in Almnzm 2.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20111122)  None (candidate not yet proposed)    View
47895  CVE-2010-5311  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141109)  None (candidate not yet proposed)    View
48151  CVE-2011-0239  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101223)  None (candidate not yet proposed)    View
48407  CVE-2011-0495  Candidate  Stack-based buffer overflow in the ast_uri_encode function in main/utils.c in Asterisk Open Source before 1.4.38.1, 1.4.39.1, 1.6.1.21, 1.6.2.15.1, 1.6.2.16.1, 1.8.1.2, 1.8.2.; and Business Edition before C.3.6.2; when running in pedantic mode allows remote authenticated users to execute arbitrary code via crafted caller ID data in vectors involving the (1) SIP channel driver, (2) URIENCODE dialplan function, or (3) AGI dialplan function.  Assigned (20110119)  None (candidate not yet proposed)    View

Page 1895 of 20943, showing 5 records out of 104715 total, starting on record 9471, ending on 9475

Actions