CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
50667 | CVE-2011-2755 | Candidate | Directory traversal vulnerability in FileDownload.jsp in ManageEngine ServiceDesk Plus 8.0 before Build 8012 allows remote attackers to read arbitrary files via unspecified vectors. | Assigned (20110717) | None (candidate not yet proposed) | View | |
50923 | CVE-2011-3011 | Candidate | BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle sessions, which allows remote attackers to obtain credentials, and consequently execute arbitrary commands, via unspecified vectors. | Assigned (20110809) | None (candidate not yet proposed) | View | |
51179 | CVE-2011-3267 | Candidate | PHP before 5.3.7 does not properly implement the error_log function, which allows context-dependent attackers to cause a denial of service (application crash) via unspecified vectors. | Assigned (20110825) | None (candidate not yet proposed) | View | |
51435 | CVE-2011-3523 | Candidate | Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 10.1.3.5.0 and 10.1.3.5.1 allows remote authenticated users to affect integrity, related to WSM Console, a different vulnerability than CVE-2011-2237. | Assigned (20110916) | None (candidate not yet proposed) | View | |
51691 | CVE-2011-3779 | Candidate | PhpHostBot 2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by admin/create_acct.php and certain other files. | Assigned (20110923) | None (candidate not yet proposed) | View |
Page 19354 of 20943, showing 5 records out of 104715 total, starting on record 96766, ending on 96770