CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47602  CVE-2010-5018  Candidate  Cross-site scripting (XSS) vulnerability in products/classified/headersearch.php in 2daybiz Online Classified Script allows remote attackers to inject arbitrary web script or HTML via the sid parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47858  CVE-2010-5274  Candidate  Untrusted search path vulnerability in PKZIP before 12.50.0014 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .zip file. NOTE: some of these details are obtained from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48114  CVE-2011-0202  Candidate  Integer overflow in CoreGraphics in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted embedded Type 1 font in a PDF document.  Assigned (20101223)  None (candidate not yet proposed)    View
48370  CVE-2011-0458  Candidate  Untrusted search path vulnerability in the Locate on Disk feature in Google Picasa before 3.8 allows local users to gain privileges via a Trojan horse executable file in the current working directory.  Assigned (20110114)  None (candidate not yet proposed)    View
48626  CVE-2011-0714  Candidate  Use-after-free vulnerability in a certain Red Hat patch for the RPC server sockets functionality in the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 might allow remote attackers to cause a denial of service (crash) via malformed data in a packet, related to lockd and the svc_xprt_received function.  Assigned (20110131)  None (candidate not yet proposed)    View

Page 19285 of 20943, showing 5 records out of 104715 total, starting on record 96421, ending on 96425

Actions