CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44520  CVE-2010-1936  Candidate  Directory traversal vulnerability in scr/soustab.php in openMairie openComInterne 1.01, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the dsn[phptype] parameter, a related issue to CVE-2007-2069.  Assigned (20100512)  None (candidate not yet proposed)    View
44776  CVE-2010-2192  Candidate  The make_lockdir_name function in policy.c in pmount 0.9.18 allow local users to overwrite arbitrary files via a symlink attack on a file in /var/lock/.  Assigned (20100607)  None (candidate not yet proposed)    View
45032  CVE-2010-2448  Candidate  znc.cpp in ZNC before 0.092 allows remote authenticated users to cause a denial of service (crash) by requesting traffic statistics when there is an active unauthenticated connection, which triggers a NULL pointer dereference, as demonstrated using (1) a traffic link in the web administration pages or (2) the traffic command in the /znc shell.  Assigned (20100624)  None (candidate not yet proposed)    View
45288  CVE-2010-2704  Candidate  Buffer overflow in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long HTTP request to nnmrptconfig.exe.  Assigned (20100712)  None (candidate not yet proposed)    View
45544  CVE-2010-2960  Candidate  The keyctl_session_to_parent function in security/keys/keyctl.c in the Linux kernel 2.6.35.4 and earlier expects that a certain parent session keyring exists, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a KEYCTL_SESSION_TO_PARENT argument to the keyctl function.  Assigned (20100804)  None (candidate not yet proposed)    View

Page 19117 of 20943, showing 5 records out of 104715 total, starting on record 95581, ending on 95585

Actions