CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47599 | CVE-2010-5015 | Candidate | SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter. | Assigned (20111102) | None (candidate not yet proposed) | View | |
47855 | CVE-2010-5271 | Candidate | Untrusted search path vulnerability in Altova MapForce 2011 Enterprise Edition SP1 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .mfd file. NOTE: some of these details are obtained from third party information. | Assigned (20120907) | None (candidate not yet proposed) | View | |
48111 | CVE-2011-0199 | Candidate | The Certificate Trust Policy component in Apple Mac OS X before 10.6.8 does not perform CRL checking for Extended Validation (EV) certificates that lack OCSP URLs, which might allow man-in-the-middle attackers to spoof an SSL server via a revoked certificate. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48367 | CVE-2011-0455 | Candidate | Cross-site scripting (XSS) vulnerability in Things BBS before 2.0.3 and BBS Thread before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20110114) | None (candidate not yet proposed) | View | |
48623 | CVE-2011-0711 | Candidate | The xfs_fs_geometry function in fs/xfs/xfs_fsops.c in the Linux kernel before 2.6.38-rc6-git3 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FSGEOMETRY_V1 ioctl call. | Assigned (20110131) | None (candidate not yet proposed) | View |
Page 19660 of 20943, showing 5 records out of 104715 total, starting on record 98296, ending on 98300