CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47351 | CVE-2010-4767 | Candidate | Open Ticket Request System (OTRS) before 2.3.6 does not properly handle e-mail messages in which the From line contains UTF-8 characters associated with diacritical marks and an invalid charset, which allows remote attackers to cause a denial of service (duplicate tickets and duplicate auto-responses) by sending a crafted message to a POP3 mailbox. | Assigned (20110318) | None (candidate not yet proposed) | View | |
47607 | CVE-2010-5023 | Candidate | SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intDivisionID parameter. | Assigned (20111102) | None (candidate not yet proposed) | View | |
47863 | CVE-2010-5279 | Candidate | article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to cause a denial of service (memory consumption) via a large integer in the ratearticleselect parameter. | Assigned (20121008) | None (candidate not yet proposed) | View | |
48119 | CVE-2011-0207 | Candidate | The MobileMe component in Apple Mac OS X before 10.6.8 uses a cleartext HTTP session for the Mail application to read e-mail aliases, which allows remote attackers to obtain potentially sensitive alias information by sniffing the network. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48375 | CVE-2011-0463 | Candidate | The ocfs2_prepare_page_for_write function in fs/ocfs2/aops.c in the Oracle Cluster File System 2 (OCFS2) subsystem in the Linux kernel before 2.6.39-rc1 does not properly handle holes that cross page boundaries, which allows local users to obtain potentially sensitive information from uninitialized disk locations by reading a file. | Assigned (20110114) | None (candidate not yet proposed) | View |
Page 19153 of 20943, showing 5 records out of 104715 total, starting on record 95761, ending on 95765