CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47342  CVE-2010-4758  Candidate  installer.pl in Open Ticket Request System (OTRS) before 3.0.3 has an Inbound Mail Password field that uses the text type, instead of the password type, for its INPUT element, which makes it easier for physically proximate attackers to obtain the password by reading the workstation screen.  Assigned (20110318)  None (candidate not yet proposed)    View
47598  CVE-2010-5014  Candidate  SQL injection vulnerability in standings.php in Elite Gaming Ladders 3.5 allows remote attackers to execute arbitrary SQL commands via the ladder[id] parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47854  CVE-2010-5270  Candidate  Multiple untrusted search path vulnerabilities in Adobe Device Central CS4 2.0.0 0476 allow local users to gain privileges via a Trojan horse (1) ibfs32.dll or (2) amt_cdb.dll file in the current working directory, as demonstrated by a directory that contains a .adcp file. NOTE: some of these details are obtained from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48110  CVE-2011-0198  Candidate  Heap-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code via a crafted embedded TrueType font.  Assigned (20101223)  None (candidate not yet proposed)    View
48366  CVE-2011-0454  Candidate  Buffer overflow in the PPP Access Concentrator (PPPAC) on the SEIL/x86 with firmware 1.00 through 1.61, SEIL/B1 with firmware 1.00 through 3.11, SEIL/X1 with firmware 1.00 through 3.11, SEIL/X2 with firmware 1.00 through 3.11, SEIL/Turbo with firmware 1.80 through 2.10, and SEIL/neu 2FE Plus with firmware 1.80 through 2.10 might allow remote attackers to execute arbitrary code via a PPPoE packet.  Assigned (20110114)  None (candidate not yet proposed)    View

Page 19577 of 20943, showing 5 records out of 104715 total, starting on record 97881, ending on 97885

Actions