CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51438  CVE-2011-3526  Candidate  Unspecified vulnerability in the Siebel Core - UIF Server component in Oracle Siebel CRM 8.0.0 and 8.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to User Interface.  Assigned (20110916)  None (candidate not yet proposed)    View
51694  CVE-2011-3782  Candidate  phpLD 2-151.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by libs/smarty/Smarty_Compiler.class.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51950  CVE-2011-4038  Candidate  Cross-site scripting (XSS) vulnerability in Invensys Wonderware HMI Reports 3.42.835.0304 and earlier, as used in Ocean Data Systems Dream Report before 4.0 and other products, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.  Assigned (20111013)  None (candidate not yet proposed)    View
52206  CVE-2011-4294  Candidate  The error-message functionality in Moodle 1.9.x before 1.9.13, 2.0.x before 2.0.4, and 2.1.x before 2.1.1 does not ensure that a continuation link refers to an http or https URL for the local Moodle instance, which might allow attackers to trick users into visiting arbitrary web sites via unspecified vectors.  Assigned (20111104)  None (candidate not yet proposed)    View
52462  CVE-2011-4550  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111127)  None (candidate not yet proposed)    View

Page 19586 of 20943, showing 5 records out of 104715 total, starting on record 97926, ending on 97930

Actions