CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47087  CVE-2010-4503  Candidate  SQL injection vulnerability in indexlight.php in Aigaion 1.3.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter in an export action.  Assigned (20101208)  None (candidate not yet proposed)    View
47343  CVE-2010-4759  Candidate  Open Ticket Request System (OTRS) before 3.0.0-beta7 does not properly restrict the ticket ages that are within the scope of a search, which allows remote authenticated users to cause a denial of service (daemon hang) via a fulltext search.  Assigned (20110318)  None (candidate not yet proposed)    View
47599  CVE-2010-5015  Candidate  SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47855  CVE-2010-5271  Candidate  Untrusted search path vulnerability in Altova MapForce 2011 Enterprise Edition SP1 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .mfd file. NOTE: some of these details are obtained from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48111  CVE-2011-0199  Candidate  The Certificate Trust Policy component in Apple Mac OS X before 10.6.8 does not perform CRL checking for Extended Validation (EV) certificates that lack OCSP URLs, which might allow man-in-the-middle attackers to spoof an SSL server via a revoked certificate.  Assigned (20101223)  None (candidate not yet proposed)    View

Page 19046 of 20943, showing 5 records out of 104715 total, starting on record 95226, ending on 95230

Actions