CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45042  CVE-2010-2458  Candidate  Cross-site scripting (XSS) vulnerability in video.php in 2daybiz Video Community Portal Script 1.0 allows remote attackers to inject arbitrary web script or HTML via the videoid parameter.  Assigned (20100625)  None (candidate not yet proposed)    View
45298  CVE-2010-2714  Candidate  SQL injection vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to execute arbitrary SQL commands via the album parameter.  Assigned (20100713)  None (candidate not yet proposed)    View
45554  CVE-2010-2970  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.9.x before 1.9.3 allow remote attackers to inject arbitrary web script or HTML via crafted content, related to (1) action/SlideShow.py, (2) action/anywikidraw.py, and (3) action/language_setup.py, a similar issue to CVE-2010-2487.  Assigned (20100804)  None (candidate not yet proposed)    View
45810  CVE-2010-3226  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100903)  None (candidate not yet proposed)    View
46066  CVE-2010-3482  Candidate  Multiple SQL injection vulnerabilities in cms_write.php in Primitive CMS 1.0.9 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) title and (2) menutitle parameters. NOTE: this can be leveraged with CVE-2010-3483 to conduct attacks without authentication.  Assigned (20100922)  None (candidate not yet proposed)    View

Page 19283 of 20943, showing 5 records out of 104715 total, starting on record 96411, ending on 96415

Actions