CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47614  CVE-2010-5030  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action.  Assigned (20111102)  None (candidate not yet proposed)    View
47870  CVE-2010-5286  Candidate  Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.  Assigned (20121126)  None (candidate not yet proposed)    View
48126  CVE-2011-0214  Candidate  CFNetwork in Apple Safari before 5.0.6 on Windows does not properly handle an untrusted attribute of a system root certificate, which allows remote web servers to bypass intended SSL restrictions via a certificate signed by a blacklisted certification authority.  Assigned (20101223)  None (candidate not yet proposed)    View
48382  CVE-2011-0470  Candidate  Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle extensions notification, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.  Assigned (20110114)  None (candidate not yet proposed)    View
48638  CVE-2011-0726  Candidate  The do_task_stat function in fs/proc/array.c in the Linux kernel before 2.6.39-rc1 does not perform an expected uid check, which makes it easier for local users to defeat the ASLR protection mechanism by reading the start_code and end_code fields in the /proc/#####/stat file for a process executing a PIE binary.  Assigned (20110201)  None (candidate not yet proposed)    View

Page 19693 of 20943, showing 5 records out of 104715 total, starting on record 98461, ending on 98465

Actions