CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51693  CVE-2011-3781  Candidate  PHPIDS 0.6.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tests/IDS/VersionTest.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51949  CVE-2011-4037  Candidate  Buffer overflow in Sielco Sistemi Winlog PRO before 2.07.09 and Winlog Lite before 2.07.09 allows user-assisted remote attackers to execute arbitrary code via invalid data in unspecified fields of a project file.  Assigned (20111013)  None (candidate not yet proposed)    View
52205  CVE-2011-4293  Candidate  The theme implementation in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 triggers duplicate caching of Cascading Style Sheets (CSS) and JavaScript content, which allows remote attackers to bypass intended access restrictions and write to an operating-system temporary directory via unspecified vectors.  Assigned (20111104)  None (candidate not yet proposed)    View
52461  CVE-2011-4549  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111127)  None (candidate not yet proposed)    View
52717  CVE-2011-4805  Candidate  Cross-site scripting (XSS) vulnerability in pubDBLogon.jsp in SAP Crystal Report Server 2008 allows remote attackers to inject arbitrary web script or HTML via the service parameter.  Assigned (20111213)  None (candidate not yet proposed)    View

Page 19509 of 20943, showing 5 records out of 104715 total, starting on record 97541, ending on 97545

Actions