CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45554  CVE-2010-2970  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.9.x before 1.9.3 allow remote attackers to inject arbitrary web script or HTML via crafted content, related to (1) action/SlideShow.py, (2) action/anywikidraw.py, and (3) action/language_setup.py, a similar issue to CVE-2010-2487.  Assigned (20100804)  None (candidate not yet proposed)    View
45810  CVE-2010-3226  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100903)  None (candidate not yet proposed)    View
46066  CVE-2010-3482  Candidate  Multiple SQL injection vulnerabilities in cms_write.php in Primitive CMS 1.0.9 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) title and (2) menutitle parameters. NOTE: this can be leveraged with CVE-2010-3483 to conduct attacks without authentication.  Assigned (20100922)  None (candidate not yet proposed)    View
46322  CVE-2010-3738  Candidate  The Security component in IBM DB2 UDB 9.5 before FP6a logs AUDIT events by using a USERID and an AUTHID value corresponding to the instance owner, instead of a USERID and an AUTHID value corresponding to the logged-in user account, which makes it easier for remote authenticated users to execute Audit administration commands without discovery.  Assigned (20101005)  None (candidate not yet proposed)    View
46578  CVE-2010-3994  Candidate  Cross-site scripting (XSS) vulnerability in HP Version Control Repository Manager (VCRM) before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20101018)  None (candidate not yet proposed)    View

Page 19894 of 20943, showing 5 records out of 104715 total, starting on record 99466, ending on 99470

Actions