CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49894  CVE-2011-1982  Candidate  Microsoft Office 2007 SP2, and 2010 Gold and SP1, does not initialize an unspecified object pointer during the opening of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Office Uninitialized Object Pointer Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50150  CVE-2011-2238  Candidate  Unspecified vulnerability in the Database Vault component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, and 11.2.0.1 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL.  Assigned (20110602)  None (candidate not yet proposed)    View
50406  CVE-2011-2494  Candidate  kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending taskstats commands to a netlink socket, as demonstrated by discovering the length of another user"s password.  Assigned (20110615)  None (candidate not yet proposed)    View
50662  CVE-2011-2750  Candidate  NFRAgent.exe in Novell File Reporter 1.0.4.2 and earlier allows remote attackers to delete arbitrary files via a full pathname in an SRS OPERATION 4 CMD 5 request to /FSF/CMD.  Assigned (20110717)  None (candidate not yet proposed)    View
50918  CVE-2011-3006  Candidate  The MyAsUtil ActiveX control in MyAsUtil5.2.0.603.dll in McAfee SaaS Endpoint Protection 5.2.1 and earlier allows remote attackers to bypass the MyASUtil.SecureObjectFactory.CreateSecureObject domain execution policy using a cross-site scripting (XSS) attack, execute arbitrary code using the MyASUtil.InstallInfo.RunUserProgram function, and possibly conduct other unspecified attacks.  Assigned (20110802)  None (candidate not yet proposed)    View

Page 18967 of 20943, showing 5 records out of 104715 total, starting on record 94831, ending on 94835

Actions