CVE List

Id CVE No. Status Description Phase Votes Comments Actions
48107  CVE-2011-0195  Candidate  The generate-id XPath function in libxslt in Apple iOS 4.3.x before 4.3.2 allows remote attackers to obtain potentially sensitive information about heap memory addresses via a crafted web site. NOTE: this may overlap CVE-2011-1202.  Assigned (20101223)  None (candidate not yet proposed)    View
48363  CVE-2011-0451  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) data/Smarty/templates/default/list.tpl and (2) data/Smarty/templates/default/campaign/bloc/cart_tag.tpl in EC-CUBE before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20110114)  None (candidate not yet proposed)    View
48619  CVE-2011-0707  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.  Assigned (20110131)  None (candidate not yet proposed)    View
48875  CVE-2011-0963  Candidate  The default configuration of the RADIUS authentication feature on the Cisco Network Admission Control (NAC) Guest Server with software before 2.0.3 allows remote attackers to bypass intended access restrictions and obtain network connectivity via unspecified vectors, aka Bug ID CSCtj66922.  Assigned (20110210)  None (candidate not yet proposed)    View
49131  CVE-2011-1219  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110303)  None (candidate not yet proposed)    View

Page 19352 of 20943, showing 5 records out of 104715 total, starting on record 96756, ending on 96760

Actions