CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47599  CVE-2010-5015  Candidate  SQL injection vulnerability in view_photo.php in 2daybiz Network Community Script allows remote attackers to execute arbitrary SQL commands via the alb parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47855  CVE-2010-5271  Candidate  Untrusted search path vulnerability in Altova MapForce 2011 Enterprise Edition SP1 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .mfd file. NOTE: some of these details are obtained from third party information.  Assigned (20120907)  None (candidate not yet proposed)    View
48111  CVE-2011-0199  Candidate  The Certificate Trust Policy component in Apple Mac OS X before 10.6.8 does not perform CRL checking for Extended Validation (EV) certificates that lack OCSP URLs, which might allow man-in-the-middle attackers to spoof an SSL server via a revoked certificate.  Assigned (20101223)  None (candidate not yet proposed)    View
48367  CVE-2011-0455  Candidate  Cross-site scripting (XSS) vulnerability in Things BBS before 2.0.3 and BBS Thread before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20110114)  None (candidate not yet proposed)    View
48623  CVE-2011-0711  Candidate  The xfs_fs_geometry function in fs/xfs/xfs_fsops.c in the Linux kernel before 2.6.38-rc6-git3 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an FSGEOMETRY_V1 ioctl call.  Assigned (20110131)  None (candidate not yet proposed)    View

Page 19660 of 20943, showing 5 records out of 104715 total, starting on record 98296, ending on 98300

Actions