CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
49894 | CVE-2011-1982 | Candidate | Microsoft Office 2007 SP2, and 2010 Gold and SP1, does not initialize an unspecified object pointer during the opening of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Office Uninitialized Object Pointer Vulnerability." | Assigned (20110509) | None (candidate not yet proposed) | View | |
50150 | CVE-2011-2238 | Candidate | Unspecified vulnerability in the Database Vault component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL. | Assigned (20110602) | None (candidate not yet proposed) | View | |
50406 | CVE-2011-2494 | Candidate | kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user"s password. | Assigned (20110615) | None (candidate not yet proposed) | View | |
50662 | CVE-2011-2750 | Candidate | NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD. | Assigned (20110717) | None (candidate not yet proposed) | View | |
50918 | CVE-2011-3006 | Candidate | The MyAsUtil ActiveX control in MyAsUtil5.2.0.603.dll in McAfee SaaS Endpoint Protection 5.2.1 and earlier allows remote attackers to bypass the MyASUtil.SecureObjectFactory.CreateSecureObject domain execution policy using a cross-site scripting (XSS) attack, execute arbitrary code using the MyASUtil.InstallInfo.RunUserProgram function, and possibly conduct other unspecified attacks. | Assigned (20110802) | None (candidate not yet proposed) | View |
Page 18967 of 20943, showing 5 records out of 104715 total, starting on record 94831, ending on 94835