CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47351  CVE-2010-4767  Candidate  Open Ticket Request System (OTRS) before 2.3.6 does not properly handle e-mail messages in which the From line contains UTF-8 characters associated with diacritical marks and an invalid charset, which allows remote attackers to cause a denial of service (duplicate tickets and duplicate auto-responses) by sending a crafted message to a POP3 mailbox.  Assigned (20110318)  None (candidate not yet proposed)    View
47607  CVE-2010-5023  Candidate  SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intDivisionID parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47863  CVE-2010-5279  Candidate  article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to cause a denial of service (memory consumption) via a large integer in the ratearticleselect parameter.  Assigned (20121008)  None (candidate not yet proposed)    View
48119  CVE-2011-0207  Candidate  The MobileMe component in Apple Mac OS X before 10.6.8 uses a cleartext HTTP session for the Mail application to read e-mail aliases, which allows remote attackers to obtain potentially sensitive alias information by sniffing the network.  Assigned (20101223)  None (candidate not yet proposed)    View
48375  CVE-2011-0463  Candidate  The ocfs2_prepare_page_for_write function in fs/ocfs2/aops.c in the Oracle Cluster File System 2 (OCFS2) subsystem in the Linux kernel before 2.6.39-rc1 does not properly handle holes that cross page boundaries, which allows local users to obtain potentially sensitive information from uninitialized disk locations by reading a file.  Assigned (20110114)  None (candidate not yet proposed)    View

Page 19153 of 20943, showing 5 records out of 104715 total, starting on record 95761, ending on 95765

Actions