CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47334  CVE-2010-4750  Candidate  Cross-site request forgery (CSRF) vulnerability in admin/libs/ADMIN.php in BLOG:CMS 4.2.1.e, and possibly earlier, allows remote attackers to hijack the authentication of administrators.  Assigned (20110301)  None (candidate not yet proposed)    View
47590  CVE-2010-5006  Candidate  SQL injection vulnerability in googlemap/index.php in EMO Realty Manager allows remote attackers to execute arbitrary SQL commands via the cat1 parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47846  CVE-2010-5262  Candidate  Multiple untrusted search path vulnerabilities in libmcl-5.4.0.dll in Gromada Multimedia Conversion Library 5.4.0 allow local users to gain privileges via a Trojan horse (1) libgif-1.1.0.dll or (2) libhav-1.0.1.dll file in the current working directory. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48102  CVE-2011-0190  Candidate  Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server.  Assigned (20101223)  None (candidate not yet proposed)    View
48358  CVE-2011-0446  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the mail_to helper in Ruby on Rails before 2.3.11, and 3.x before 3.0.4, when javascript encoding is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) name or (2) email value.  Assigned (20110113)  None (candidate not yet proposed)    View

Page 18965 of 20943, showing 5 records out of 104715 total, starting on record 94821, ending on 94825

Actions