CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
42775 | CVE-2010-0191 | Candidate | Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a "prefix protocol handler vulnerability." | Assigned (20100106) | None (candidate not yet proposed) | View | |
43031 | CVE-2010-0447 | Candidate | The helpmanager servlet in the web server in HP OpenView Performance Insight (OVPI) 5.4 and earlier does not properly authenticate and validate requests, which allows remote attackers to execute arbitrary commands via vectors involving upload of a JSP document. | Assigned (20100127) | None (candidate not yet proposed) | View | |
43287 | CVE-2010-0703 | Candidate | Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter. | Assigned (20100223) | None (candidate not yet proposed) | View | |
43543 | CVE-2010-0959 | Candidate | Cross-site scripting (XSS) vulnerability in WebEditor/Authentication/LoginPage.aspx in IBM ENOVIA SmarTeam 5 allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter. | Assigned (20100310) | None (candidate not yet proposed) | View | |
43799 | CVE-2010-1215 | Candidate | Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 do not properly implement access to a content object through a SafeJSObjectWrapper (aka SJOW) wrapper, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by leveraging "access to an object from the chrome scope." | Assigned (20100330) | None (candidate not yet proposed) | View |
Page 1915 of 20943, showing 5 records out of 104715 total, starting on record 9571, ending on 9575