CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47334 | CVE-2010-4750 | Candidate | Cross-site request forgery (CSRF) vulnerability in admin/libs/ADMIN.php in BLOG:CMS 4.2.1.e, and possibly earlier, allows remote attackers to hijack the authentication of administrators. | Assigned (20110301) | None (candidate not yet proposed) | View | |
47590 | CVE-2010-5006 | Candidate | SQL injection vulnerability in googlemap/index.php in EMO Realty Manager allows remote attackers to execute arbitrary SQL commands via the cat1 parameter. | Assigned (20111102) | None (candidate not yet proposed) | View | |
47846 | CVE-2010-5262 | Candidate | Multiple untrusted search path vulnerabilities in libmcl-5.4.0.dll in Gromada Multimedia Conversion Library 5.4.0 allow local users to gain privileges via a Trojan horse (1) libgif-1.1.0.dll or (2) libhav-1.0.1.dll file in the current working directory. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20120907) | None (candidate not yet proposed) | View | |
48102 | CVE-2011-0190 | Candidate | Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48358 | CVE-2011-0446 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the mail_to helper in Ruby on Rails before 2.3.11, and 3.x before 3.0.4, when javascript encoding is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) name or (2) email value. | Assigned (20110113) | None (candidate not yet proposed) | View |
Page 18965 of 20943, showing 5 records out of 104715 total, starting on record 94821, ending on 94825