CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52208  CVE-2011-4296  Candidate  lib/db/access.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 assigns incorrect capabilities to the course-creator role, which allows remote authenticated users to modify course filters by leveraging this role.  Assigned (20111104)  None (candidate not yet proposed)    View
52464  CVE-2011-4552  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in One Click Orgs before 1.2.3 allow remote attackers to inject arbitrary web script or HTML via the description field of (1) a new vote or (2) the eject member proposal feature.  Assigned (20111127)  None (candidate not yet proposed)    View
52720  CVE-2011-4808  Candidate  SQL injection vulnerability in the HM Community (com_hmcommunity) component before 1.01 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a fnd_home action to index.php.  Assigned (20111213)  None (candidate not yet proposed)    View
52976  CVE-2011-5064  Candidate  DigestAuthenticator.java in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 uses Catalina as the hard-coded server secret (aka private key), which makes it easier for remote attackers to bypass cryptographic protection mechanisms by leveraging knowledge of this string, a different vulnerability than CVE-2011-1184.  Assigned (20120114)  None (candidate not yet proposed)    View
53232  CVE-2011-5320  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150312)  None (candidate not yet proposed)    View

Page 19129 of 20943, showing 5 records out of 104715 total, starting on record 95641, ending on 95645

Actions