CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46318  CVE-2010-3734  Candidate  The Install component in IBM DB2 UDB 9.5 before FP6a on Linux, UNIX, and Windows enforces an unintended limit on password length, which makes it easier for attackers to obtain access via a brute-force attack.  Assigned (20101005)  None (candidate not yet proposed)    View
46574  CVE-2010-3990  Candidate  Unspecified vulnerability in HP Virtual Server Environment before 6.2 allows remote attackers to read arbitrary files via unknown vectors.  Assigned (20101018)  None (candidate not yet proposed)    View
46830  CVE-2010-4246  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in graph.php in pfSense 1.2.3 and 2 beta 4 allow remote attackers to inject arbitrary web script or HTML via the (1) ifnum or (2) ifname parameter, a different vulnerability than CVE-2008-1182.  Assigned (20101116)  None (candidate not yet proposed)    View
47086  CVE-2010-4502  Candidate  Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via crafted arguments to the 0x88000080 IOCTL, which triggers a buffer overflow.  Assigned (20101208)  None (candidate not yet proposed)    View
47342  CVE-2010-4758  Candidate  installer.pl in Open Ticket Request System (OTRS) before 3.0.3 has an Inbound Mail Password field that uses the text type, instead of the password type, for its INPUT element, which makes it easier for physically proximate attackers to obtain the password by reading the workstation screen.  Assigned (20110318)  None (candidate not yet proposed)    View

Page 19567 of 20943, showing 5 records out of 104715 total, starting on record 97831, ending on 97835

Actions