CVE List

Id CVE No. Status Description Phase Votes Comments Actions
52213  CVE-2011-4301  Candidate  The MoodleQuickForm class in the Forms Library in lib/formslib.php in Moodle 1.9.x before 1.9.14, 2.0.x before 2.0.5, and 2.1.x before 2.1.2 does not recognize Forms API setConstant operations, which allows remote attackers to submit unexpected form content by modifying the values of constant fields.  Assigned (20111104)  None (candidate not yet proposed)    View
52469  CVE-2011-4557  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111127)  None (candidate not yet proposed)    View
52725  CVE-2011-4813  Candidate  Directory traversal vulnerability in clientarea.php in WHMCompleteSolution (WHMCS) 3.x.x allows remote attackers to read arbitrary files via an invalid action and a ../ (dot dot slash) in the templatefile parameter.  Assigned (20111213)  None (candidate not yet proposed)    View
52981  CVE-2011-5069  Candidate  Unrestricted file upload vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in unspecified directory, a different program than CVE-2011-3833.  Assigned (20120128)  None (candidate not yet proposed)    View
53237  CVE-2011-5325  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151021)  None (candidate not yet proposed)    View

Page 20126 of 20943, showing 5 records out of 104715 total, starting on record 100626, ending on 100630

Actions