CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51947  CVE-2011-4035  Candidate  Cross-site scripting (XSS) vulnerability in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20111013)  None (candidate not yet proposed)    View
52203  CVE-2011-4291  Candidate  Moodle 2.0.x before 2.0.3 allows remote authenticated users to cause a denial of service (invalid database records) via a series of crafted ratings operations.  Assigned (20111104)  None (candidate not yet proposed)    View
52459  CVE-2011-4547  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in includes/templates/template_default/common/tpl_header_test_info.php in Zen Cart 1.3.9h, when debugging is enabled, might allow remote attackers to inject arbitrary web script or HTML via the (1) main_page parameter or (2) PATH_INFO, a different vulnerability than CVE-2011-4567.  Assigned (20111123)  None (candidate not yet proposed)    View
52715  CVE-2011-4803  Candidate  SQL injection vulnerability in wptouch/ajax.php in the WPTouch plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20111213)  None (candidate not yet proposed)    View
52971  CVE-2011-5059  Candidate  Stack-based buffer overflow in Final Draft 8 before 8.02 allows remote attackers to execute arbitrary code via a crafted SmartType element, a different vulnerability than CVE-2011-5002. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20120110)  None (candidate not yet proposed)    View

Page 19355 of 20943, showing 5 records out of 104715 total, starting on record 96771, ending on 96775

Actions