CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51174  CVE-2011-3262  Candidate  tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local users to cause a denial of service (management software infinite loop and management domain resource consumption) via unspecified vectors related to "Lack of error checking in the decompression loop."  Assigned (20110819)  None (candidate not yet proposed)    View
51430  CVE-2011-3518  Candidate  Unspecified vulnerability in the Siebel Core - UIF Client component in Oracle Siebel CRM 8.0.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to User Interface.  Assigned (20110916)  None (candidate not yet proposed)    View
51686  CVE-2011-3774  Candidate  php Easy Survey Package (phpESP) 2.1.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by public/landing.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51942  CVE-2011-4030  Candidate  The CMFEditions component 2.x in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2 does not prevent the KwAsAttributes classes from being publishable, which allows remote attackers to access sub-objects via unspecified vectors, a different vulnerability than CVE-2011-3587.  Assigned (20111009)  None (candidate not yet proposed)    View
52198  CVE-2011-4286  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the media-filter implementation in filter/mediaplugin/filter.php in Moodle 1.9.x before 1.9.11 and 2.0.x before 2.0.2 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) Flash Video (aka FLV) files and (2) YouTube videos.  Assigned (20111104)  None (candidate not yet proposed)    View

Page 18968 of 20943, showing 5 records out of 104715 total, starting on record 94836, ending on 94840

Actions