CVE List

Id CVE No. Status Description Phase Votes Comments Actions
48368  CVE-2011-0456  Candidate  webscript.pl in Open Ticket Request System (OTRS) 2.3.4 and earlier allows remote attackers to execute arbitrary commands via unspecified vectors, related to a "command injection vulnerability."  Assigned (20110114)  None (candidate not yet proposed)    View
48624  CVE-2011-0712  Candidate  Multiple buffer overflows in the caiaq Native Instruments USB audio functionality in the Linux kernel before 2.6.38-rc4-next-20110215 might allow attackers to cause a denial of service or possibly have unspecified other impact via a long USB device name, related to (1) the snd_usb_caiaq_audio_init function in sound/usb/caiaq/audio.c and (2) the snd_usb_caiaq_midi_init function in sound/usb/caiaq/midi.c.  Assigned (20110131)  None (candidate not yet proposed)    View
48880  CVE-2011-0968  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110210)  None (candidate not yet proposed)    View
49136  CVE-2011-1224  Candidate  IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 does not use the CRL Distribution Points (CDP) certificate extension, which might allow man-in-the-middle attackers to spoof an SSL partner via a revoked certificate for a (1) client, (2) queue manager, or (3) application.  Assigned (20110303)  None (candidate not yet proposed)    View
49392  CVE-2011-1480  Candidate  SQL injection vulnerability in admin.php in the administration backend in Francisco Burzi PHP-Nuke 8.0 and earlier allows remote attackers to execute arbitrary SQL commands via the chng_uid parameter.  Assigned (20110321)  None (candidate not yet proposed)    View

Page 19126 of 20943, showing 5 records out of 104715 total, starting on record 95626, ending on 95630

Actions