CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44055  CVE-2010-1471  Candidate  Directory traversal vulnerability in the AddressBook (com_addressbook) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100419)  None (candidate not yet proposed)    View
44311  CVE-2010-1727  Candidate  SQL injection vulnerability in type.asp in JobPost 1.0 allows remote attackers to execute arbitrary SQL commands via the iType parameter. NOTE: some of these details are obtained from third party information.  Assigned (20100505)  None (candidate not yet proposed)    View
44567  CVE-2010-1983  Candidate  Directory traversal vulnerability in the redTWITTER (com_redtwitter) component 1.0.x including 1.0b11 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.  Assigned (20100519)  None (candidate not yet proposed)    View
44823  CVE-2010-2239  Candidate  Red Hat libvirt, possibly 0.6.0 through 0.8.2, creates new images without setting the user-defined backing-store format, which allows guest OS users to read arbitrary files on the host OS via unspecified vectors.  Assigned (20100609)  None (candidate not yet proposed)    View
45079  CVE-2010-2495  Candidate  The pppol2tp_xmit function in drivers/net/pppol2tp.c in the L2TP implementation in the Linux kernel before 2.6.34 does not properly validate certain values associated with an interface, which allows attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via vectors related to a routing change.  Assigned (20100628)  None (candidate not yet proposed)    View

Page 1916 of 20943, showing 5 records out of 104715 total, starting on record 9576, ending on 9580

Actions