CVE List

Id CVE No. Status Description Phase Votes Comments Actions
50919  CVE-2011-3007  Candidate  The myCIOScn ActiveX control (myCIOScn.dll) in McAfee SaaS Endpoint Protection 5.2.1 and earlier allows remote attackers to write to arbitrary files by specifying an arbitrary filename in the MyCioScan.Scan.ReportFile parameter, as demonstrated by injecting script into a log file and executing arbitrary code using the MyCioScan.Scan.Start method.  Assigned (20110802)  None (candidate not yet proposed)    View
51175  CVE-2011-3263  Candidate  zabbix_agentd in Zabbix before 1.8.6 and 1.9.x before 1.9.4 allows context-dependent attackers to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device.  Assigned (20110819)  None (candidate not yet proposed)    View
51431  CVE-2011-3519  Candidate  Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.2 and 12.1.3 allows remote authenticated users to affect confidentiality, related to REST Services.  Assigned (20110916)  None (candidate not yet proposed)    View
51687  CVE-2011-3775  Candidate  PHPfileNavigator 2.3.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by xestion/varios/logs.inc.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51943  CVE-2011-4031  Candidate  Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers to execute arbitrary code via a crafted ASF packet.  Assigned (20111011)  None (candidate not yet proposed)    View

Page 19045 of 20943, showing 5 records out of 104715 total, starting on record 95221, ending on 95225

Actions