CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51689  CVE-2011-3777  Candidate  phpFreeChat 1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/zilveer/style.css.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51945  CVE-2011-4033  Candidate  Buffer overflow in the Steema TeeChart ActiveX control, as used in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier, allows remote attackers to cause a denial of service via unspecified vectors.  Assigned (20111013)  None (candidate not yet proposed)    View
52201  CVE-2011-4289  Candidate  Moodle 2.0.x before 2.0.3 does not recognize the configuration setting that makes e-mail addresses visible only to course members, which allows remote authenticated users to obtain sensitive address information by reading a full profile page.  Assigned (20111104)  None (candidate not yet proposed)    View
52457  CVE-2011-4545  Candidate  CRLF injection vulnerability in admin/displayImage.php in Prestashop 1.4.4.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the name parameter.  Assigned (20111123)  None (candidate not yet proposed)    View
52713  CVE-2011-4801  Candidate  SQL injection vulnerability in akeyActivationLogin.do in Authenex Web Management Control in Authenex Strong Authentication System (ASAS) Server 3.1.0.2 and 3.1.0.3 allows remote attackers to execute arbitrary SQL commands via the username parameter.  Assigned (20111213)  None (candidate not yet proposed)    View

Page 19182 of 20943, showing 5 records out of 104715 total, starting on record 95906, ending on 95910

Actions