CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46064  CVE-2010-3480  Candidate  Directory traversal vulnerability in index.php in ApPHP PHP MicroCMS 1.0.1, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.  Assigned (20100922)  None (candidate not yet proposed)    View
46320  CVE-2010-3736  Candidate  Memory leak in the Relational Data Services component in IBM DB2 UDB 9.5 before FP6a, when the connection concentrator is enabled, allows remote authenticated users to cause a denial of service (heap memory consumption) by using a different code page than the database server.  Assigned (20101005)  None (candidate not yet proposed)    View
46576  CVE-2010-3992  Candidate  Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote authenticated users to gain privileges via unknown vectors.  Assigned (20101018)  None (candidate not yet proposed)    View
46832  CVE-2010-4248  Candidate  Race condition in the __exit_signal function in kernel/exit.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors related to multithreaded exec, the use of a thread group leader in kernel/posix-cpu-timers.c, and the selection of a new thread group leader in the de_thread function in fs/exec.c.  Assigned (20101116)  None (candidate not yet proposed)    View
47088  CVE-2010-4504  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in eSyndiCat Directory 2.3 allow remote attackers to inject arbitrary web script or HTML via the title parameter to (1) suggest-category.php and (2) suggest-listing.php.  Assigned (20101208)  None (candidate not yet proposed)    View

Page 19356 of 20943, showing 5 records out of 104715 total, starting on record 96776, ending on 96780

Actions