CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42775  CVE-2010-0191  Candidate  Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a "prefix protocol handler vulnerability."  Assigned (20100106)  None (candidate not yet proposed)    View
43031  CVE-2010-0447  Candidate  The helpmanager servlet in the web server in HP OpenView Performance Insight (OVPI) 5.4 and earlier does not properly authenticate and validate requests, which allows remote attackers to execute arbitrary commands via vectors involving upload of a JSP document.  Assigned (20100127)  None (candidate not yet proposed)    View
43287  CVE-2010-0703  Candidate  Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter.  Assigned (20100223)  None (candidate not yet proposed)    View
43543  CVE-2010-0959  Candidate  Cross-site scripting (XSS) vulnerability in WebEditor/Authentication/LoginPage.aspx in IBM ENOVIA SmarTeam 5 allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter.  Assigned (20100310)  None (candidate not yet proposed)    View
43799  CVE-2010-1215  Candidate  Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 do not properly implement access to a content object through a SafeJSObjectWrapper (aka SJOW) wrapper, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by leveraging "access to an object from the chrome scope."  Assigned (20100330)  None (candidate not yet proposed)    View

Page 1915 of 20943, showing 5 records out of 104715 total, starting on record 9571, ending on 9575

Actions