CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47601 | CVE-2010-5017 | Candidate | SQL injection vulnerability in stats.php in Elite Gaming Ladders 3.0 allows remote attackers to execute arbitrary SQL commands via the account parameter. | Assigned (20111102) | None (candidate not yet proposed) | View | |
47857 | CVE-2010-5273 | Candidate | Untrusted search path vulnerability in Altova DiffDog 2011 Enterprise Edition SP1 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .dbdif file. NOTE: some of these details are obtained from third party information. | Assigned (20120907) | None (candidate not yet proposed) | View | |
48113 | CVE-2011-0201 | Candidate | Off-by-one error in the CoreFoundation framework in Apple Mac OS X before 10.6.8 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a CFString object that triggers a buffer overflow. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48369 | CVE-2011-0457 | Candidate | Cross-site scripting (XSS) vulnerability in e107 0.7.22 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20110114) | None (candidate not yet proposed) | View | |
48625 | CVE-2011-0713 | Candidate | Heap-based buffer overflow in wiretap/dct3trace.c in Wireshark 1.2.0 through 1.2.14 and 1.4.0 through 1.4.3 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long record in a Nokia DCT3 trace file. | Assigned (20110131) | None (candidate not yet proposed) | View |
Page 19814 of 20943, showing 5 records out of 104715 total, starting on record 99066, ending on 99070