CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42481  CVE-2009-5046  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110114)  None (candidate not yet proposed)    View
42737  CVE-2010-0153  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remote attackers to hijack the authentication of administrators for requests that (1) change settings or (2) conduct denial of service attacks.  Assigned (20100104)  None (candidate not yet proposed)    View
42993  CVE-2010-0409  Candidate  Buffer overflow in the GMIME_UUENCODE_LEN macro in gmime/gmime-encodings.h in GMime before 2.4.15 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via input data for a uuencode operation.  Assigned (20100127)  None (candidate not yet proposed)    View
43249  CVE-2010-0665  Candidate  JAG (Just Another Guestbook) 1.14 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request for jag/database.sql.  Assigned (20100219)  None (candidate not yet proposed)    View
43505  CVE-2010-0921  Candidate  Cross-site request forgery (CSRF) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to hijack the authentication of unspecified victims via vectors related to lack of "XSS/CSRF Get Filter and Referer Check fixes."  Assigned (20100303)  None (candidate not yet proposed)    View

Page 19810 of 20943, showing 5 records out of 104715 total, starting on record 99046, ending on 99050

Actions