CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49900  CVE-2011-1988  Candidate  Microsoft Excel 2003 SP3 and 2007 SP2; Excel in Office 2007 SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 do not properly parse records in Excel spreadsheets, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel Heap Corruption Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50156  CVE-2011-2244  Candidate  Unspecified vulnerability in the Security Framework component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.1, and 11.2.0.2; and Enterprise Manager Grid Control 10.1.0.6, 10.2.0.5, and 11.1.0.1; allows remote attackers to affect confidentiality and integrity via unknown vectors related to Authentication.  Assigned (20110602)  None (candidate not yet proposed)    View
50412  CVE-2011-2500  Candidate  The host_reliable_addrinfo function in support/export/hostname.c in nfs-utils before 1.2.4 does not properly use DNS to verify access to NFS exports, which allows remote attackers to mount filesystems by establishing crafted DNS A and PTR records.  Assigned (20110615)  None (candidate not yet proposed)    View
50668  CVE-2011-2756  Candidate  FileDownload.jsp in ManageEngine ServiceDesk Plus 8.0 before Build 8012 does not require authentication, which allows remote attackers to read files from a specific directory via unspecified vectors.  Assigned (20110717)  None (candidate not yet proposed)    View
50924  CVE-2011-3012  Candidate  The ioQuake3 engine, as used in World of Padman 1.2 and earlier, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote attackers to execute arbitrary code via a crafted third-party addon that creates a Trojan horse DLL file, a different vulnerability than CVE-2011-2764.  Assigned (20110809)  None (candidate not yet proposed)    View

Page 19420 of 20943, showing 5 records out of 104715 total, starting on record 97096, ending on 97100

Actions